|
BackWeb 'LiteInstActivator.dll' ActiveX Control Buffer Overflow Vulnerability
BackWeb is prone to a remote buffer-overflow vulnerability because of a flaw in one of its ActiveX control components. The issue occurs because the component fails to perform adequate boundary checks on user-supplied input before copying it to a buffer. An attacker can exploit this issue to run arbitrary attacker-supplied code in the context of the currently logged-in user. Failed exploits attempts will trigger denial-of-service conditions. This issue affects versions prior to BackWeb 8.1.1.87. |
|
|
Privacy Statement |