CVE-2012-0284
high · 9.3Stack-based buffer overflow in the SetSource method in the Cisco Linksys PlayerPT ActiveX control 1.0.0.15 in PlayerPT.ocx on the Cisco WVC200 Wireless-G PTZ Internet video camera allows remote attackers to execute arbitrary code via a long URL in the first argument (aka the sURL argument).
9.3
CVSS
36.3%
EPSS (exploit prob.)
98th
EPSS percentile
2012-07-19
Published
AV:N/AC:M/Au:N/C:C/I:C/A:C
Weaknesses
CWE-119
Affected products
| Vendor | Product | Affected versions |
|---|---|---|
| cisco | linksys_playerpt_activex_control | 1.0.0.15 |
| cisco | wvc200_wireless-g_ptz_internet_video_camera | all versions |
Check a specific version with /api/v1/cve/match.
References
- http://archives.neohapsis.com/archives/bugtraq/2012-07/0113.html
- http://secunia.com/secunia_research/2012-25/
- http://www.securityfocus.com/bid/54588
- http://www.securitytracker.com/id?1027259
- https://exchange.xforce.ibmcloud.com/vulnerabilities/77085
- http://archives.neohapsis.com/archives/bugtraq/2012-07/0113.html
- http://secunia.com/secunia_research/2012-25/
- http://www.securityfocus.com/bid/54588
- http://www.securitytracker.com/id?1027259
- https://exchange.xforce.ibmcloud.com/vulnerabilities/77085
Query this programmatically:
curl https://evil-db.io/api/v1/cve/CVE-2012-0284