CVE-2010-5193

Viscom Image Viewer CP Pro/Gold <8.0-6.0 - Buffer Overflow

Title source: llm
STIX 2.1

Exploitation Summary

EIP tracks 3 public exploits for CVE-2010-5193. PoCs published by Metasploit, Dr_IDE, including Metasploit module exploits/windows/browser/imgeviewer_tifmergemultifiles.

AI-analyzed exploit summary This Metasploit module exploits a stack-based buffer overflow in the Viscom Image Viewer CP Pro 8.0/Gold 6.0 ActiveX control via the TifMergeMultiFiles() method. It includes ROP chains to bypass DEP and ASLR on various Windows versions with Java support.

Description

Stack-based buffer overflow in the TIFMergeMultiFiles function in the SCRIBBLE.ScribbleCtrl.1 ActiveX control (ImageViewer2.ocx) in Viscom Image Viewer CP Pro 8.0 and Gold 6.0 allows remote attackers to execute arbitrary code via a long strDelimit parameter.

Exploits (3)

exploitdb WORKING POC VERIFIED
by Metasploit · rubyremotewindows
https://www.exploit-db.com/exploits/18123

This Metasploit module exploits a stack-based buffer overflow in the Viscom Image Viewer CP Pro 8.0/Gold 6.0 ActiveX control via the TifMergeMultiFiles() method. It includes ROP chains to bypass DEP and ASLR on various Windows versions with Java support.

Classification
Working Poc 100%
Attack Type
Rce
Complexity
Moderate
Reliability
Reliable
Target: Viscom Image Viewer CP Pro 8.0/Gold 6.0
No auth needed
Prerequisites: Victim must browse to the exploit page · ActiveX control must be installed · Java support required for DEP/ASLR bypass
devstral-2 · analyzed Feb 16, 2026 Full analysis →
exploitdb WORKING POC VERIFIED
by Dr_IDE · htmlremotewindows
https://www.exploit-db.com/exploits/15668

This exploit targets a buffer overflow vulnerability in Image Viewer CP Gold 6 ActiveX control via the TIFMergeMultiFiles() method. It uses a heap spray technique to achieve remote code execution, delivering a calc.exe payload.

Classification
Working Poc 95%
Attack Type
Rce
Complexity
Moderate
Reliability
Reliable
Target: Image Viewer CP Gold 6
No auth needed
Prerequisites: Victim must visit a malicious webpage using Internet Explorer with the vulnerable ActiveX control installed
devstral-2 · analyzed Feb 16, 2026 Full analysis →
metasploit WORKING POC NORMAL
by Dr_IDE · rubypocwin
https://github.com/rapid7/metasploit-framework/blob/master/modules/exploits/windows/browser/imgeviewer_tifmergemultifiles.rb

This Metasploit module exploits a stack-based buffer overflow in the ImageViewer2.OCX ActiveX control via the TifMergeMultiFiles() method, achieving remote code execution by bypassing DEP and ASLR on Windows systems with Java support.

Classification
Working Poc 100%
Attack Type
Rce
Complexity
Moderate
Reliability
Reliable
Target: Viscom Image Viewer CP Pro 8.0/Gold 6.0
No auth needed
Prerequisites: Victim must trust the publisher Viscom Software · Java support for DEP/ASLR bypass
devstral-2 · analyzed Feb 19, 2026 Full analysis →

References (4)

Core 4
Core References
Exploit, Third Party Advisory exploit x_refsource_exploit-db
http://www.exploit-db.com/exploits/15668
Exploit exploit x_refsource_exploit-db
http://www.exploit-db.com/exploits/18123
Third Party Advisory, VDB Entry vdb-entry x_refsource_xf
https://exchange.xforce.ibmcloud.com/vulnerabilities/63666
Vendor Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/42445

Scores

EPSS 0.3197
EPSS Percentile 98.1%

Details

CWE
CWE-119
Status published
Products (2)
viscomsoft/image_viewer_cp_gold_sdk 6.0
viscomsoft/image_viewer_cp_pro_sdk 8.0
Published Aug 31, 2012
Tracked Since Feb 18, 2026