CVE-2007-2526 Information

Description

Heap-based buffer overflow in the ConnectAsyncEx function in VNC Viewer ActiveX control (scvncctrl.dll) in the SmartCode VNC Manager 3.6 allows remote attackers to execute arbitrary code via a long argument.

Reference

http://moaxb.blogspot.com/2007/05/moaxb-08-smartcode-vnc-manager-36.html http://osvdb.org/34340 http://secunia.com/advisories/25203 http://www.exploit-db.com/exploits/3873 http://www.securityfocus.com/bid/23869 http://www.shinnai.altervista.org/moaxb/20070508/scvncctrl.txt http://www.vupen.com/english/advisories/2007/1704 https://exchange.xforce.ibmcloud.com/vulnerabilities/34149

Share on: