CVE-2017-12969

HIGH

Avaya IP Office Contact Center < 10.1.1 - Remote Code Execution via ViewerCtrl ActiveX Buffer Overflow

Title source: llm
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for CVE-2017-12969. PoCs published by hyp3rlinx.

AI-analyzed exploit summary This exploit demonstrates a buffer overflow vulnerability in the ViewerCtrl.ocx ActiveX component used by Avaya IP Office (IPO) versions 9.1.0 to 10.1. The PoC triggers an access violation by passing a long string of 'A' characters to the 'open' method, potentially leading to arbitrary code execution.

Description

Buffer overflow in the ViewerCtrlLib.ViewerCtrl ActiveX control in Avaya IP Office Contact Center before 10.1.1 allows remote attackers to cause a denial of service (heap corruption and crash) or execute arbitrary code via a long string to the open method.

Exploits (1)

exploitdb WORKING POC
by hyp3rlinx · textdoswindows
https://www.exploit-db.com/exploits/43120

This exploit demonstrates a buffer overflow vulnerability in the ViewerCtrl.ocx ActiveX component used by Avaya IP Office (IPO) versions 9.1.0 to 10.1. The PoC triggers an access violation by passing a long string of 'A' characters to the 'open' method, potentially leading to arbitrary code execution.

Classification
Working Poc 90%
Attack Type
Rce
Complexity
Trivial
Reliability
Reliable
Target: Avaya IP Office (IPO) v9.1.0 - 10.1
No auth needed
Prerequisites: Victim must visit a malicious webpage using Internet Explorer · ViewerCtrl.ocx must be installed on the victim's system
devstral-2 · analyzed Feb 16, 2026 Full analysis →

References (6)

Core 6
Core References
Vendor Advisory x_refsource_confirm
http://downloads.avaya.com/css/P8/documents/101044091
Third Party Advisory, VDB Entry vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/101667
Third Party Advisory, VDB Entry exploit x_refsource_exploit-db
https://www.exploit-db.com/exploits/43120/
Mailing List, Third Party Advisory mailing-list x_refsource_fulldisc
http://seclists.org/fulldisclosure/2017/Nov/17

Scores

CVSS v3 8.8
EPSS 0.1008
EPSS Percentile 95.0%
Attack Vector NETWORK
CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

Details

CWE
CWE-119
Status published
Products (10)
avaya/ip_office_contact_center 9.1 sp11
avaya/ip_office_contact_center 9.1.0
avaya/ip_office_contact_center 9.1.0.2209.1540
avaya/ip_office_contact_center 9.1.6
avaya/ip_office_contact_center 9.1.7
avaya/ip_office_contact_center 9.1.8
avaya/ip_office_contact_center 9.1.9
avaya/ip_office_contact_center 10.0
avaya/ip_office_contact_center 10.0.0.3-8600.1705
avaya/ip_office_contact_center 10.1
Published Nov 10, 2017
Tracked Since Feb 18, 2026