Multiple stack-based buffer overflows in the IBM Lotus Domino Web Access ActiveX control, as provided by inotes6.dll, inotes6w.dll, dwa7.dll, and dwa7w.dll, in Domino 6.x and 7.x allow remote attackers to execute arbitrary code, as demonstrated by an overflow from a long General_ServerName property value when calling the InstallBrowserHelperDll function in the Upload Module in the dwa7.dwa7.1 control in dwa7w.dll 7.0.34.1.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: certcc
Published: 2007-12-27T22:00:00
Updated: 2024-08-07T14:53:55.977Z
Reserved: 2007-08-22T00:00:00
Link: CVE-2007-4474
Vulnrichment
No data.
NVD
Status : Modified
Published: 2007-12-27T22:46:00.000
Modified: 2024-11-21T00:35:40.977
Link: CVE-2007-4474
Redhat
No data.