Stack-based buffer overflow in the SetSource method in the Cisco Linksys PlayerPT ActiveX control 1.0.0.15 in PlayerPT.ocx on the Cisco WVC200 Wireless-G PTZ Internet video camera allows remote attackers to execute arbitrary code via a long URL in the first argument (aka the sURL argument).
References
Link | Resource |
---|---|
http://secunia.com/secunia_research/2012-25/ | Vendor Advisory |
http://archives.neohapsis.com/archives/bugtraq/2012-07/0113.html | Broken Link |
http://www.securityfocus.com/bid/54588 | Third Party Advisory VDB Entry |
http://www.securitytracker.com/id?1027259 | Third Party Advisory VDB Entry |
https://exchange.xforce.ibmcloud.com/vulnerabilities/77085 |
Configurations
Configuration 1 (hide)
AND |
|
Information
Published : 2012-07-19 08:55
Updated : 2017-08-28 18:30
NVD link : CVE-2012-0284
Mitre link : CVE-2012-0284
JSON object : View
CWE
CWE-119
Improper Restriction of Operations within the Bounds of a Memory Buffer
Products Affected
cisco
- linksys_playerpt_activex_control
- wvc200_wireless-g_ptz_internet_video_camera