3 results (0.013 seconds)

CVSS: 7.1EPSS: 1%CPEs: 1EXPL: 1

The IMWeb.IMWebControl.1 ActiveX control in IMWeb.dll 7.0.0.x, and possibly IMWebControl.dll, in iMesh 7.1.0.x and earlier allows remote attackers to cause a denial of service (Internet Explorer 7 crash) via an empty string in the argument to the ProcessRequestEx method. El control ActiveX IMWeb.IMWebControl.1 en IMWeb.dll 7.0.0.x, y posiblemente IMWebControl.dll, en iMesh 7.1.0.x y anteriores permite a atacantes remotos provocar denegación de servicio (caida del Internet Explorer 7) a través de una cadena vacía en el argumento en el método ProcessRequestEx. • http://osvdb.org/40240 http://retrogod.altervista.org/rgod_imesh.html http://secunia.com/advisories/28134 http://www.securityfocus.com/archive/1/485261/100/0/threaded http://www.vupen.com/english/advisories/2007/4240 • CWE-20: Improper Input Validation •

CVSS: 10.0EPSS: 12%CPEs: 1EXPL: 3

The IMWeb.IMWebControl.1 ActiveX control in IMWeb.dll 7.0.0.x, and possibly IMWebControl.dll, in iMesh 7.1.0.x and earlier allows remote attackers to execute arbitrary code via a certain argument to the SetHandler method. El control ActiveX IMWeb.IMWebControl.1 en IMWeb.dll 7.0.0.x, y posiblemente IMWebControl.dll, en iMesh 7.1.0.x y anteriores permite a atacantes remotos ejecutar código de su elección a través de un cierto argumento en el método SetHandler. • https://www.exploit-db.com/exploits/12244 https://www.exploit-db.com/exploits/30897 http://osvdb.org/40239 http://retrogod.altervista.org/rgod_imesh.html http://secunia.com/advisories/28134 http://www.securityfocus.com/archive/1/485261/100/0/threaded http://www.vupen.com/english/advisories/2007/4240 • CWE-20: Improper Input Validation •

CVSS: 7.5EPSS: 1%CPEs: 1EXPL: 1

Buffer overflow in iMesh 1.02 allows remote attackers to execute arbitrary commands via a long string to the iMesh port. • http://archives.neohapsis.com/archives/bugtraq/2000-06/0335.html http://www.imesh.com/download/download.html http://www.securityfocus.com/bid/1407 •