Vulnerabilities > Imesh COM

DATE CVE VULNERABILITY TITLE RISK
2007-12-20 CVE-2007-6493 Improper Input Validation vulnerability in Imesh.Com Imesh
The IMWeb.IMWebControl.1 ActiveX control in IMWeb.dll 7.0.0.x, and possibly IMWebControl.dll, in iMesh 7.1.0.x and earlier allows remote attackers to execute arbitrary code via a certain argument to the SetHandler method.
network
low complexity
imesh-com CWE-20
critical
10.0
2007-12-20 CVE-2007-6492 Improper Input Validation vulnerability in Imesh.Com Imesh
The IMWeb.IMWebControl.1 ActiveX control in IMWeb.dll 7.0.0.x, and possibly IMWebControl.dll, in iMesh 7.1.0.x and earlier allows remote attackers to cause a denial of service (Internet Explorer 7 crash) via an empty string in the argument to the ProcessRequestEx method.
network
imesh-com CWE-20
7.1
2007-01-24 CVE-2007-0018 Improper Restriction of Operations Within the Bounds of A Memory Buffer vulnerability in multiple products
Stack-based buffer overflow in the NCTAudioFile2.AudioFile ActiveX control (NCTAudioFile2.dll), as used by multiple products, allows remote attackers to execute arbitrary code via a long argument to the SetFormatLikeSample function.
9.3
2000-06-29 CVE-2000-0599 Unspecified vulnerability in Imesh.Com Imesh
Buffer overflow in iMesh 1.02 allows remote attackers to execute arbitrary commands via a long string to the iMesh port.
network
low complexity
imesh-com
7.5