[Forgot Password]
Login  Register Subscribe

23631

 
 

115038

 
 

95906

 
 

909

 
 

77986

 
 

109

Paid content will be excluded from the download.


Download | Alert*
CVE
view XML

CVE-2010-0679

Date: (C)2010-02-22   (M)2015-12-16
 
CVSS Score: 9.3Access Vector: NETWORK
Exploitability Subscore: 8.6Access Complexity: MEDIUM
Impact Subscore: 10.0Authentication: NONE
 Confidentiality: COMPLETE
 Integrity: COMPLETE
 Availability: COMPLETE











Multiple stack-based buffer overflows in the HyleosChemView.HLChemView ActiveX control (HyleosChemView.ocx) in Hyleos ChemView 1.9.5.1 allow remote attackers to execute arbitrary code via a large number of white space characters in the filename argument to the (1) SaveasMolFile and (2) ReadMolFile methods.

Reference:
EXPLOIT-DB-11422
BID-38225
SECUNIA-38523
OSVDB-62276
http://packetstormsecurity.org/1002-advisories/chemviewx-overflow.txt
http://packetstormsecurity.org/1002-exploits/hyleoschemview-heap.rb.txt
http://www.security-assessment.com/files/advisories/2010-02-11_ChemviewX_Activex.pdf

CWE    1
CWE-119

© 2013 SecPod Technologies