37696vdb entry
http://osvdb.org/37696 CVE-2007-3955
LinkedIn Toolbar 3.0.2.1098 - Remote Buffer Overflow
Record summary
CVE-2007-3955 has a selected CVSS score of 6.8; EIP currently links 1 catalogued exploit.
Description
Buffer overflow in the IEToolbar.IEContextMenu.1 ActiveX control in LinkedInIEToolbar.dll in the LinkedIn Toolbar 3.0.2.1098 allows remote attackers to execute arbitrary code via a long second argument (varBrowser argument) to the search method. NOTE: some of these details are obtained from third party information.
Description source: CVE List
Exploitation context
Available material
- Catalogued exploits
- 1
Proofs of concept
1Catalogued exploits
ExploitDBLinkedIn Toolbar 3.0.2.1098 - Remote Buffer OverflowExploitDB exploitby Jared DeMottNot analyzed1 file
References
826181Third-party advisory
http://secunia.com/advisories/26181 25032vdb entry
http://www.securityfocus.com/bid/25032 vdalabs.com
http://www.vdalabs.com/tools/linkedin.html ADV-2007-2620vdb entry
http://www.vupen.com/english/advisories/2007/2620 linkedin-ietoolbar-search-bo(35578)vdb entry
https://exchange.xforce.ibmcloud.com/vulnerabilities/35578 nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2007-3955 4217exploit
https://www.exploit-db.com/exploits/4217