CVE-2015-2096 Information

Description

Use-after-free vulnerability in the Connect function in the WESPMonitor.WESPMonitorCtrl.1 ActiveX control in WebGate eDVR Manager allows remote attackers to execute arbitrary code via an invalid IP address and a page reload.

Reference

http://www.securityfocus.com/bid/72849 http://www.zerodayinitiative.com/advisories/ZDI-15-069/

Share on: