Vulnerabilities > CVE-2007-2526 - Denial of Service vulnerability in Smartcode VNC Manager 3.6

047910
CVSS 9.3 - CRITICAL
Attack vector
NETWORK
Attack complexity
MEDIUM
Privileges required
NONE
Confidentiality impact
COMPLETE
Integrity impact
COMPLETE
Availability impact
COMPLETE
network
smartcode
critical
exploit available

Summary

Heap-based buffer overflow in the ConnectAsyncEx function in VNC Viewer ActiveX control (scvncctrl.dll) in the SmartCode VNC Manager 3.6 allows remote attackers to execute arbitrary code via a long argument.

Vulnerable Configurations

Part Description Count
Application
Smartcode
1

Exploit-Db

descriptionSmartCode VNC Manager 3.6 (scvncctrl.dll) Denial of Service Exploit. CVE-2007-2526. Dos exploit for windows platform
fileexploits/windows/dos/3873.html
idEDB-ID:3873
last seen2016-01-31
modified2007-05-08
platformwindows
port
published2007-05-08
reportershinnai
sourcehttps://www.exploit-db.com/download/3873/
titleSmartCode VNC Manager 3.6 scvncctrl.dll Denial of Service Exploit
typedos