activePDF WebGrabber version 3.8.2.0 contains a stack-based buffer overflow vulnerability in the GetStatus() method of the APWebGrb.ocx ActiveX control. By passing an overly long string to this method, a remote attacker can execute arbitrary code in the context of the vulnerable process. Although the control is not marked safe for scripting, exploitation is possible via crafted HTML content in Internet Explorer under permissive security settings.
Metrics
Affected Vendors & Products
References
History
Tue, 02 Sep 2025 21:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|
Sat, 30 Aug 2025 13:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | activePDF WebGrabber version 3.8.2.0 contains a stack-based buffer overflow vulnerability in the GetStatus() method of the APWebGrb.ocx ActiveX control. By passing an overly long string to this method, a remote attacker can execute arbitrary code in the context of the vulnerable process. Although the control is not marked safe for scripting, exploitation is possible via crafted HTML content in Internet Explorer under permissive security settings. | |
Title | activePDF WebGrabber ActiveX Control Buffer Overflow | |
Weaknesses | CWE-121 | |
References |
|
|
Metrics |
cvssV4_0
|

Status: PUBLISHED
Assigner: VulnCheck
Published:
Updated: 2025-09-02T20:47:26.273Z
Reserved: 2025-08-28T16:51:12.840Z
Link: CVE-2008-20001

Updated: 2025-09-02T20:47:18.205Z

Status : Awaiting Analysis
Published: 2025-08-30T14:15:33.533
Modified: 2025-09-02T15:55:25.420
Link: CVE-2008-20001

No data.

No data.