CVE-2008-4750
DB Software Laboratory VImp X 4.8.8.0 - Stack-Based Buffer Overflow via Long LogFile Property
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2008-4750. PoCs published by shinnai.
AI-analyzed exploit summary This exploit demonstrates multiple vulnerabilities in db Software Laboratory VImpX (VImpX.ocx) v. 4.8.8.0, including a stack-based buffer overflow (RCE) and arbitrary file deletion/corruption via unsafe method calls. The PoC uses VBScript to trigger these vulnerabilities in Internet Explorer.
Description
Stack-based buffer overflow in the VImpX.VImpAX ActiveX control (VImpX.ocx) 4.8.8.0 in DB Software Laboratory VImp X, possibly 4.7.7, allows remote attackers to execute arbitrary code via a long LogFile property.
Exploits (1)
This exploit demonstrates multiple vulnerabilities in db Software Laboratory VImpX (VImpX.ocx) v. 4.8.8.0, including a stack-based buffer overflow (RCE) and arbitrary file deletion/corruption via unsafe method calls. The PoC uses VBScript to trigger these vulnerabilities in Internet Explorer.