Vulnerabilities > CVE-2007-2920 - Unspecified vulnerability in Zoomify Viewer Activex Control
Attack vector
UNKNOWN Attack complexity
UNKNOWN Privileges required
UNKNOWN Confidentiality impact
UNKNOWN Integrity impact
UNKNOWN Availability impact
UNKNOWN zoomify
nessus
Summary
Multiple stack-based buffer overflows in the Zoomify Viewer ActiveX control in ZActiveX.dll might allow remote attackers to execute arbitrary code via unspecified vectors.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 1 |
Nessus
NASL family | Windows |
NASL id | ZOOMIFY_VIEWER_ACTIVEX_OVERFLOWS.NASL |
description | The remote host contains the Zoomify Viewer ActiveX control, used to incorporate zoomable images into websites. The version of this control on the remote host is reportedly affected by multiple stack-based buffer overflows. If an attacker can trick a user on the affected host into visiting a specially crafted web page, these issues could be leveraged to execute arbitrary code on the host subject to the user |
last seen | 2020-06-01 |
modified | 2020-06-02 |
plugin id | 25460 |
published | 2007-06-12 |
reporter | This script is Copyright (C) 2007-2018 Tenable Network Security, Inc. |
source | https://www.tenable.com/plugins/nessus/25460 |
title | Zoomify Viewer ActiveX Buffer Overflows |
code |
|
References
- http://osvdb.org/37207
- http://osvdb.org/37207
- http://secunia.com/advisories/25625
- http://secunia.com/advisories/25625
- http://www.kb.cert.org/vuls/id/174177
- http://www.kb.cert.org/vuls/id/174177
- http://www.securityfocus.com/bid/24421
- http://www.securityfocus.com/bid/24421
- http://www.vupen.com/english/advisories/2007/2142
- http://www.vupen.com/english/advisories/2007/2142
- https://exchange.xforce.ibmcloud.com/vulnerabilities/34825
- https://exchange.xforce.ibmcloud.com/vulnerabilities/34825