CVE-2008-0437

HP Virtual Rooms - Buffer Overflow via ActiveX Control Property Manipulation

Title source: llm
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for CVE-2008-0437. PoCs published by Elazar.

AI-analyzed exploit summary This exploit targets a buffer overflow vulnerability in HP Virtual Rooms WebHPVCInstall Control (CVE-2008-0437). It uses a heap spray technique to achieve remote code execution by overflowing the `AuthenticationURL` property with a large buffer followed by shellcode.

Description

Multiple buffer overflows in the WebHPVCInstall.HPVirtualRooms14 ActiveX control in HPVirtualRooms14.dll 1.0.0.100, as used in the installation process for HP Virtual Rooms, allow remote attackers to execute arbitrary code via a long (1) AuthenticationURL, (2) PortalAPIURL, or (3) cabroot property value. NOTE: some of these details are obtained from third party information.

Exploits (1)

exploitdb WORKING POC VERIFIED
by Elazar · htmlremotewindows
https://www.exploit-db.com/exploits/4959

This exploit targets a buffer overflow vulnerability in HP Virtual Rooms WebHPVCInstall Control (CVE-2008-0437). It uses a heap spray technique to achieve remote code execution by overflowing the `AuthenticationURL` property with a large buffer followed by shellcode.

Classification
Working Poc 90%
Attack Type
Rce
Complexity
Moderate
Reliability
Racy
Target: HP Virtual Rooms WebHPVCInstall Control (hpvirtualrooms14.dll version 1.0.0.100)
No auth needed
Prerequisites: Victim must visit a malicious webpage using Internet Explorer 6 · Target system must have the vulnerable HP Virtual Rooms control installed
devstral-2 · analyzed Feb 16, 2026 Full analysis →

References (6)

Core 6
Core References
Third Party Advisory, VDB Entry vdb-entry x_refsource_xf
https://exchange.xforce.ibmcloud.com/vulnerabilities/39836
Third Party Advisory, VDB Entry vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/27384
Vendor Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/28595
Mailing List mailing-list x_refsource_fulldisc
http://marc.info/?l=full-disclosure&m=120098751528333&w=2
Exploit, Third Party Advisory exploit x_refsource_exploit-db
https://www.exploit-db.com/exploits/4959
Third Party Advisory vdb-entry x_refsource_vupen
http://www.vupen.com/english/advisories/2008/0236

Scores

EPSS 0.5808
EPSS Percentile 99.0%

Details

CWE
CWE-119
Status published
Products (2)
hp/virtual_rooms 1.0.0.100
microsoft/activex
Published Jan 23, 2008
Tracked Since Feb 18, 2026