Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs

Ultra Office Control 'HttpUpload()' Method Buffer Overflow Vulnerability

To exploit this issue, an attacker must entice an unsuspecting user to view a malicious webpage.

UPDATE (September 17, 2008): Symantec has observed active exploit attempts of this issue in the wild.

Core Security Technologies has developed a working commercial exploit for its CORE IMPACT product. This exploit is not otherwise publicly available or known to be circulating in the wild.

The following exploit code is available:







 

Privacy Statement
Copyright 2009, SecurityFocus