CVE-2012-5306 – D-Link DCS-5605 Network Surveillance - ActiveX Control 'DcsCliCtrl.dll' lstrcpyW Remote Buffer Overflow
https://notcve.org/view.php?id=CVE-2012-5306
Stack-based buffer overflow in the SelectDirectory method in DcsCliCtrl.dll in Camera Stream Client ActiveX Control, as used in D-Link DCS-5605 PTZ IP Network Camera, allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a long string argument. Desbordamiento de búfer basado en pila en el método SelectDirectory en DcsCliCtrl.dll en el control ActiveX Camera Stream Client, como el usado en D-Link DCS-5605 PTZ IP Network Camera, permite a atacantes remotos ejecutar código a través de de un argumento con una cadena larga. • https://www.exploit-db.com/exploits/18673 http://archives.neohapsis.com/archives/bugtraq/2012-03/0154.html http://osvdb.org/80663 http://secunia.com/advisories/48602 http://www.exploit-db.com/exploits/18673 http://www.securityfocus.com/bid/52769 https://exchange.xforce.ibmcloud.com/vulnerabilities/74447 • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •