[Forgot Password]
Login  Register Subscribe

23631

 
 

117687

 
 

98250

 
 

909

 
 

79198

 
 

109

Paid content will be excluded from the download.


Download | Alert*
CVE
view XML

CVE-2009-1800

Date: (C)2009-05-28   (M)2015-12-16 


Stack-based buffer overflow in the Chinagames CGAgent ActiveX control 1.x in CGAgent.dll, as distributed in Chinagames iGame 2009, allows remote attackers to execute arbitrary code via a long argument to the CreateChinagames method, as exploited in the wild in April and May 2009. NOTE: some of these details are obtained from third party information.

CVSS Score: 7.5Access Vector: NETWORK
Exploit Score: 10.0Access Complexity: LOW
Impact Score: 6.4Authentication: NONE
 Confidentiality: PARTIAL
 Integrity: PARTIAL
 Availability: PARTIAL





Reference:
BID-34871
SECUNIA-35005
http://bbs.pediy.com/showthread.php?t=87615
http://downloads.securityfocus.com/vulnerabilities/exploits/34871.html
http://hi.baidu.com/wi4r/blog/item/8b1c06fb2e3de8819f514671.html
http://www.cisrt.org/enblog/read.php?245

CWE    1
CWE-119

© 2013 SecPod Technologies