Core Security
info@coresecurity.com  | +1.617.399.6980 | Contact Us   Core Blog Core Blog Twitter LinkedIn youtube
SHARE

CORE IMPACT v10 - Exploits Update (Tue Dec 15 2009)

IBM Access Support GetXMLValue ActiveX Control Buffer Overflow Exploit

Exploits/Client Side  [Windows]




• Tue Dec 15 2009
A vulnerability has been identified in IBM Access Support ActiveX, which could be exploited by remote attackers to compromise an affected system. This issue is caused by a buffer overflow error in the "IbmEgath.dll" module when processing malformed data passed to the "GetXMLValue()" method, which could be exploited by remote attackers to execute arbitrary code by tricking a user into visiting a specially crafted web page.

Exploits Vulnerabiltiy: CVE-2009-0215



< Back to Product Updates