Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs

BackWeb 'LiteInstActivator.dll' ActiveX Control Buffer Overflow Vulnerability

BackWeb is prone to a remote buffer-overflow vulnerability because of a flaw in one of its ActiveX control components. The issue occurs because the component fails to perform adequate boundary checks on user-supplied input before copying it to a buffer.

An attacker can exploit this issue to run arbitrary attacker-supplied code in the context of the currently logged-in user. Failed exploits attempts will trigger denial-of-service conditions.

This issue affects versions prior to BackWeb 8.1.1.87.







 

Privacy Statement
Copyright 2009, SecurityFocus