Show filters
158 Total Results
Displaying 11-20 of 158
Sort by:
Attacker Value
Unknown
CVE-2018-19447
Disclosure Date: June 17, 2019 (last updated November 27, 2024)
A stack-based buffer overflow can occur for specially crafted PDF files in Foxit Reader SDK (ActiveX) 5.4.0.1031 when parsing the URI string. An attacker can leverage this to gain remote code execution.
0
Attacker Value
Unknown
CVE-2018-19449
Disclosure Date: June 17, 2019 (last updated November 27, 2024)
A File Write can occur for specially crafted PDF files in Foxit Reader SDK (ActiveX) Professional 5.4.0.1031 when the JavaScript API Doc.exportAsFDF is used. An attacker can leverage this to gain remote code execution.
0
Attacker Value
Unknown
CVE-2018-19452
Disclosure Date: June 07, 2019 (last updated November 27, 2024)
A use after free in the TextBox field Mouse Enter action in IReader_ContentProvider can occur for specially crafted PDF files in Foxit Reader SDK (ActiveX) Professional 5.4.0.1031. An attacker can leverage this to gain remote code execution. Relative to CVE-2018-19444, this has a different free location and requires different JavaScript code for exploitation.
0
Attacker Value
Unknown
CVE-2018-19451
Disclosure Date: June 07, 2019 (last updated November 27, 2024)
A command injection can occur for specially crafted PDF files in Foxit Reader SDK (ActiveX) Professional 5.4.0.1031 when using the Open File action on a Field. An attacker can leverage this to gain remote code execution.
0
Attacker Value
Unknown
CVE-2018-5221
Disclosure Date: January 09, 2018 (last updated November 26, 2024)
Multiple buffer overflows in BarCodeWiz BarCode before 6.7 ActiveX control (BarcodeWiz.DLL) allow remote attackers to execute arbitrary code via a long argument to the (1) BottomText or (2) TopText property.
0
Attacker Value
Unknown
CVE-2015-5624
Disclosure Date: September 07, 2015 (last updated October 05, 2023)
Buffer overflow in the ExecCall method in c2lv6.ocx in the FreeBit ELPhoneBtnV6 ActiveX control allows remote attackers to execute arbitrary code via a crafted HTML document, related to the discontinued "Click to Live" service.
0
Attacker Value
Unknown
CVE-2015-4647
Disclosure Date: July 06, 2015 (last updated October 05, 2023)
Multiple stack-based buffer overflows in Ipropsapi in Panasonic Security API (PS-API) ActiveX SDK before 8.10.18 allow remote attackers to execute arbitrary code via a long string in the (1) FilePassword property or to the (2) GetStringInfo method.
0
Attacker Value
Unknown
CVE-2015-4648
Disclosure Date: July 06, 2015 (last updated October 05, 2023)
Stack-based buffer overflow in the Ipropsapi.ipropsapiCtrl.1 ActiveX control in ipropsapivideo in Panasonic Security API (PS-API) ActiveX SDK before 8.10.18 allows remote attackers to execute arbitrary code via a long string to the MulticastAddr method.
0
Attacker Value
Unknown
CVE-2015-0986
Disclosure Date: May 26, 2015 (last updated October 05, 2023)
Multiple stack-based buffer overflows in Moxa VPort ActiveX SDK Plus before 2.8 allow remote attackers to insert assembly-code lines via vectors involving a regkey (1) set or (2) get command.
0
Attacker Value
Unknown
CVE-2011-5292
Disclosure Date: January 01, 2015 (last updated October 05, 2023)
The EaseWeFtp.FtpLibrary ActiveX control in EaseWeFtp.ocx in Easewe FTP OCX 4.5.0.9 does not restrict access to certain methods, which allows remote attackers to execute arbitrary files via a pathname in the first argument to the (1) Execute or (2) Run method, (3) write to arbitrary files via a pathname in the argument to the CreateLocalFile method, (4) create arbitrary directories via a pathname in the argument to the CreateLocalFolder method, or (5) delete arbitrary files via a pathname in the argument to the DeleteLocalFile method.
0