CVE-2010-4556 Information

Description

Stack-based buffer overflow in the SapThemeRepository ActiveX control (sapwdpcd.dll) in SAP NetWeaver Business Client allows remote attackers to execute arbitrary code via the (1) Load and (2) LoadTheme methods.

Reference

http://secunia.com/advisories/35796 http://www.securityfocus.com/bid/45396 http://www.securitytracker.com/id?1024890 http://www.vupen.com/english/advisories/2010/3239 http://www.zerodayinitiative.com/advisories/ZDI-10-290/ https://exchange.xforce.ibmcloud.com/vulnerabilities/64061 https://service.sap.com/sap/support/notes/1519966

Share on: