control software vulnerabilities
vulnerabilities.aspcode.net
Searching control software vulnerabilities
A system-critical NETBIOS/SMB share has inappro
system-critical
|
inappropriate
|
NETBIOS/SMB
|
control
|
access
|
share
|
has
|
A system-critical NETBIOS/SMB share has inappropriate access control.
Buffer overflow in the Eyedog ActiveX control a
arbitrary
|
attacker
|
commands
|
overflow
|
execute
|
ActiveX
|
control
|
Eyedog
|
Buffer
|
remote
|
allows
|
Buffer overflow in the Eyedog ActiveX control allows a remote attacker to execute arbitrary commands.
Modifications to ACLs (Access Control Lists) in
Modifications
|
ACLs
|
Modifications to ACLs (Access Control Lists) in Microsoft Exchange 5.5 do not take effect until the directory store cache is refreshed.
Buffer overflow in the control service for MERC
Mailserver
|
arbitrary
|
attackers
|
password
|
overflow
|
execute
|
control
|
service
|
MERCUR
|
Buffer
|
remote
|
allows
|
long
|
code
|
via
|
Buffer overflow in the control service for MERCUR Mailserver 4.2 allows remote attackers to execute arbitrary code via a long password.
Buffer overflow in the COM Object Control Handl
overflow
|
Control
|
Handler
|
Domino
|
Buffer
|
Object
|
Lotus
|
Buffer overflow in the COM Object Control Handler for Lotus Domino 6.0.1 and earlier allows remote attackers to execute arbitrary code via multiple attack vectors, as demonstrated using the InitializeUsingNotesUserName method in the iNotes ActiveX control.
Buffer overflow in the ActiveX control for Micr
Microsoft
|
overflow
|
Snapshot
|
control
|
ActiveX
|
Viewer
|
Buffer
|
Access
|
Buffer overflow in the ActiveX control for Microsoft Access Snapshot Viewer for Access 97, 2000, and 2002 allows remote attackers to execute arbitrary code via long parameters to the control.
Mozilla before 1.7, Firefox before 0.9, and Thu
Thunderbird
|
determine
|
attackers
|
obscuring
|
dragging
|
location
|
tricking
|
Mozilla
|
Firefox
|
control
|
upload
|
remote
|
allows
|
before
|
user's
|
drive
|
files
|
hard
|
text
|
into
|
file
|
user
|
Mozilla before 1.7, Firefox before 0.9, and Thunderbird before 0.7 allows remote attackers to determine the location of files on a user's hard drive by obscuring a file upload control and tricking the user into dragging text into that control.
Unknown vulnerability in the PageEditor in Moin
vulnerability
|
PageEditor
|
MoinMoin
|
Unknown
|
Unknown vulnerability in the PageEditor in MoinMoin 1.2.2 and earlier, related to Access Control Lists (ACL), has unknown impact.
cplay 1.49 on Linux allows local users to overw
cplay
|
cplay 1.49 on Linux allows local users to overwrite arbitrary files via a symlink attack on the cplay_control temporary file.
The Outlook Progress Ctl control allows remote
attackers
|
Progress
|
control
|
Outlook
|
service
|
denial
|
allows
|
remote
|
cause
|
Ctl
|
The Outlook Progress Ctl control allows remote attackers to cause a denial of service (Internet Explorer crash) by creating a COM object of the class associated with the control's CLSID, which is not intended for use within Internet Explorer.
The System Monitor Source Properties control al
Properties
|
attackers
|
control
|
service
|
Monitor
|
denial
|
remote
|
Source
|
System
|
allows
|
cause
|
The System Monitor Source Properties control allows remote attackers to cause a denial of service (Internet Explorer crash) by creating a COM object of the class associated with the control's CLSID, which is not intended for use within Internet Explorer.
The SmartConnect Class control allows remote at
SmartConnect
|
attackers
|
control
|
service
|
denial
|
allows
|
remote
|
Class
|
cause
|
The SmartConnect Class control allows remote attackers to cause a denial of service (Internet Explorer crash) by creating a COM object of the class associated with the control's CLSID, which is not intended for use within Internet Explorer.
The CLSID_ApprenticeICW control allows remote a
CLSID_ApprenticeICW
|
attackers
|
service
|
control
|
denial
|
allows
|
remote
|
cause
|
The CLSID_ApprenticeICW control allows remote attackers to cause a denial of service (Internet Explorer crash) by creating a COM object of the class associated with the control's CLSID, which is not intended for use within Internet Explorer.
The WeOnlyDo! SFTP (wodSFTP) ActiveX control is
WeOnlyDo
|
SFTP
|
The WeOnlyDo! SFTP (wodSFTP) ActiveX control is marked as safe for scripting, which allows remote attackers to read and write files in arbitrary locations by accessing the control from a web page.
The Touch Control ActiveX control 2.0.0.55 allo
ActiveX
|
Control
|
Touch
|
The Touch Control ActiveX control 2.0.0.55 allows remote attackers to read and possibly execute arbitrary files via a "file///" URI in the sPath parameter to the Execute function.
Buffer overflow in the Retro64 / Miniclip CR64L
unspecified
|
CR64Loader
|
references
|
arbitrary
|
attackers
|
involving
|
Miniclip
|
document
|
overflow
|
vectors
|
execute
|
control
|
ActiveX
|
Retro64
|
Buffer
|
remote
|
allows
|
CLSID
|
code
|
HTML
|
via
|
Buffer overflow in the Retro64 / Miniclip CR64Loader ActiveX control allows remote attackers to execute arbitrary code via unspecified vectors involving an HTML document that references the CLSID of the control.
The WZFILEVIEW.FileViewCtrl.61 ActiveX control
WZFILEVIEWFileViewCtrl61
|
control
|
ActiveX
|
The WZFILEVIEW.FileViewCtrl.61 ActiveX control (aka Sky Software "FileView" ActiveX control) for WinZip 10.0 before build 7245 allows remote attackers to execute arbitrary code via unspecified "unsafe methods."
Multiple buffer overflows in the IMAILAPILib Ac
IMAILAPILib
|
overflows
|
Multiple
|
control
|
ActiveX
|
buffer
|
Multiple buffer overflows in the IMAILAPILib ActiveX control (IMailAPI.dll) in Ipswitch IMail Server before 2006.2 allow remote attackers to execute arbitrary code via the (1) WebConnect and (2) Connect members in the (a) IMailServer control; (3) Sync3 and (4) Init3 members in the (b) IMailLDAPService control; and the (5) SetReplyTo member in the (c) IMailUserCollection control.
Stack-based buffer overflow in the Microgaming
Microgaming
|
Stack-based
|
Download
|
overflow
|
ActiveX
|
control
|
buffer
|
Helper
|
Stack-based buffer overflow in the Microgaming Download Helper ActiveX control (dlhelper.dll) before 7.2.0.19, and the WebHandler Class control, allows remote attackers to execute arbitrary code via unspecified vectors.
Directory traversal vulnerability in a certain
vulnerability
|
Directory
|
traversal
|
control
|
Scanner
|
certain
|
ActiveX
|
Nessus
|
Directory traversal vulnerability in a certain ActiveX control in Nessus Vulnerability Scanner 3.0.6 allows remote attackers to delete arbitrary files via a .. (dot dot) in the argument to the deleteReport method, probably related to the SCANCTRL.ScanCtrlCtrl.1 ActiveX control in scan.dll.
Software vulnerabilities results 1 to 20 of 773
Page:
1
2
3
4
5
...
39
►