Vulnerabilities > CVE-2007-2919 - Buffer Overflow vulnerability in E-Book Systems FlipViewer FlipViewerX.DLL ActiveX

047910
CVSS 9.3 - CRITICAL
Attack vector
NETWORK
Attack complexity
MEDIUM
Privileges required
NONE
Confidentiality impact
COMPLETE
Integrity impact
COMPLETE
Availability impact
COMPLETE
network
e-book-systems
critical
nessus
exploit available
metasploit

Summary

Multiple stack-based buffer overflows in the FViewerLoading ActiveX control (FlipViewerX.dll) in E-Book Systems FlipViewer before 4.1 allow remote attackers to cause a denial of service (crash) or execute arbitrary code via long (1) UID, (2) Opf, (3) PAGENO, (4) LaunchMode, (5) SubID, (6) BookID, (7) LibraryID, (8) SubURL, and (9) LoadOpf properties.

Vulnerable Configurations

Part Description Count
Application
E-Book_Systems
1

Exploit-Db

descriptionFlipViewer FViewerLoading ActiveX Control Buffer Overflow. CVE-2007-2919. Remote exploit for windows platform
idEDB-ID:16601
last seen2016-02-02
modified2010-06-15
published2010-06-15
reportermetasploit
sourcehttps://www.exploit-db.com/download/16601/
titleFlipViewer FViewerLoading ActiveX Control Buffer Overflow

Metasploit

descriptionThis module exploits a stack buffer overflow in E-BOOK Systems FlipViewer 4.0. The vulnerability is caused due to a boundary error in the FViewerLoading (FlipViewerX.dll) ActiveX control when handling the "LoadOpf()" method.
idMSF:EXPLOIT/WINDOWS/BROWSER/EBOOK_FLIPVIEWER_FVIEWERLOADING
last seen2020-06-14
modified2017-11-08
published2009-03-02
referenceshttps://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-2919
reporterRapid7
sourcehttps://github.com/rapid7/metasploit-framework/blob/master//modules/exploits/windows/browser/ebook_flipviewer_fviewerloading.rb
titleFlipViewer FViewerLoading ActiveX Control Buffer Overflow

Nessus

NASL familyWindows
NASL idFLIPVIEWER_ACTIVEX_41_OVERFLOWS.NASL
descriptionThe Windows remote host contains the FlipViewer ActiveX control, which is used for viewing electronic documents. The version of this ActiveX control on the remote host reportedly contains multiple stack-based buffer overflow vulnerabilities. A remote attacker may be able to leverage these issues to execute arbitrary code on the remote host subject to the privileges of the current user.
last seen2020-06-01
modified2020-06-02
plugin id25442
published2007-06-07
reporterThis script is Copyright (C) 2007-2018 Tenable Network Security, Inc.
sourcehttps://www.tenable.com/plugins/nessus/25442
titleFlipViewer ActiveX Control < 4.1 Buffer Overflow Vulnerabilities

Packetstorm

data sourcehttps://packetstormsecurity.com/files/download/83113/ebook_flipviewer_fviewerloading.rb.txt
idPACKETSTORM:83113
last seen2016-12-05
published2009-11-26
reporterLSO
sourcehttps://packetstormsecurity.com/files/83113/FlipViewer-FViewerLoading-ActiveX-Control-Buffer-Overflow.html
titleFlipViewer FViewerLoading ActiveX Control Buffer Overflow