Vulnerabilities > CVE-2007-3488 - Buffer Overflow vulnerability in Sony Network Camera Snc-P5 1.0

047910
CVSS 10.0 - CRITICAL
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
COMPLETE
Integrity impact
COMPLETE
Availability impact
COMPLETE
network
low complexity
sony
critical
exploit available

Summary

Heap-based buffer overflow in the viewer ActiveX control in Sony Network Camera SNC-RZ25N before 1.30; SNC-P1 and SNC-P5 before 1.29; SNC-CS10 and SNC-CS11 before 1.06; SNC-DF40N and SNC-DF70N before 1.18; SNC-RZ50N and SNC-CS50N before 2.22; SNC-DF85N, SNC-DF80N, and SNC-DF50N before 1.12; and SNC-RX570N/W, SNC-RX570N/B, SNC-RX550N/W, SNC-RX550N/B, SNC-RX530N/W, and SNC-RX530N/B 3.00 and 2.x before 2.31; allows remote attackers to execute arbitrary code via a long first argument to the PrmSetNetworkParam method.

Vulnerable Configurations

Part Description Count
Hardware
Sony
1

Exploit-Db

descriptionSony Network Camera SNC-P5 v1.0 ActiveX viewer Heap Overflow PoC. CVE-2007-3488. Dos exploit for windows platform
fileexploits/windows/dos/4120.html
idEDB-ID:4120
last seen2016-01-31
modified2007-06-27
platformwindows
port
published2007-06-27
reporterstr0ke
sourcehttps://www.exploit-db.com/download/4120/
titleSony Network Camera SNC-P5 1.0 - ActiveX viewer Heap Overflow PoC
typedos