Multiple stack-based buffer overflows in the IBM Lotus Domino Web Access ActiveX control, as provided by inotes6.dll, inotes6w.dll, dwa7.dll, and dwa7w.dll, in Domino 6.x and 7.x allow remote attackers to execute arbitrary code, as demonstrated by an overflow from a long General_ServerName property value when calling the InstallBrowserHelperDll function in the Upload Module in the dwa7.dwa7.1 control in dwa7w.dll 7.0.34.1.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: certcc

Published: 2007-12-27T22:00:00

Updated: 2024-08-07T14:53:55.977Z

Reserved: 2007-08-22T00:00:00

Link: CVE-2007-4474

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2007-12-27T22:46:00.000

Modified: 2017-09-29T01:29:17.377

Link: CVE-2007-4474

cve-icon Redhat

No data.