Lucene search

K
cveMitreCVE-2010-5194
HistoryAug 31, 2012 - 9:55 p.m.

CVE-2010-5194

2012-08-3121:55:01
CWE-119
mitre
web.nvd.nist.gov
26
cve-2010-5194
image2pdf
buffer overflow
scribblectrl
activex
code execution
viscom image viewer

CVSS2

9.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:M/Au:N/C:C/I:C/A:C

AI Score

8.3

Confidence

Low

EPSS

0.195

Percentile

96.4%

Stack-based buffer overflow in the Image2PDF function in the SCRIBBLE.ScribbleCtrl.1 ActiveX control (ImageViewer2.ocx) in Viscom Image Viewer CP Pro 8.0, Gold 5.5, Gold 6.0, and earlier allows remote attackers to execute arbitrary code via a long strPDFFile parameter.

Affected configurations

Nvd
Node
viscomsoftimage_viewer_cp_gold_sdkMatch5.5
OR
viscomsoftimage_viewer_cp_gold_sdkMatch6.0
OR
viscomsoftimage_viewer_cp_pro_sdkMatch8.0
VendorProductVersionCPE
viscomsoftimage_viewer_cp_gold_sdk5.5cpe:2.3:a:viscomsoft:image_viewer_cp_gold_sdk:5.5:*:*:*:*:*:*:*
viscomsoftimage_viewer_cp_gold_sdk6.0cpe:2.3:a:viscomsoft:image_viewer_cp_gold_sdk:6.0:*:*:*:*:*:*:*
viscomsoftimage_viewer_cp_pro_sdk8.0cpe:2.3:a:viscomsoft:image_viewer_cp_pro_sdk:8.0:*:*:*:*:*:*:*

CVSS2

9.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:M/Au:N/C:C/I:C/A:C

AI Score

8.3

Confidence

Low

EPSS

0.195

Percentile

96.4%

Related for CVE-2010-5194