Vulnerabilities > HP > Virtual Rooms > 1.0.0.100

DATE CVE VULNERABILITY TITLE RISK
2008-01-23 CVE-2008-0437 Improper Restriction of Operations Within the Bounds of A Memory Buffer vulnerability in multiple products
Multiple buffer overflows in the WebHPVCInstall.HPVirtualRooms14 ActiveX control in HPVirtualRooms14.dll 1.0.0.100, as used in the installation process for HP Virtual Rooms, allow remote attackers to execute arbitrary code via a long (1) AuthenticationURL, (2) PortalAPIURL, or (3) cabroot property value.
network
low complexity
hp microsoft CWE-119
critical
10.0