CVE-2007-4474

NONE

Multiple stack-based buffer overflows in the IBM Lotus Domino Web Access ActiveX control, as provided by inotes6.dll, inotes6w.dll, dwa7.dll, and dwa7w.dll, in Domino 6.x and 7.x allow remote attacker

发布于: 12/27/2007更新于: 4/9/2025

描述

Multiple stack-based buffer overflows in the IBM Lotus Domino Web Access ActiveX control, as provided by inotes6.dll, inotes6w.dll, dwa7.dll, and dwa7w.dll, in Domino 6.x and 7.x allow remote attackers to execute arbitrary code, as demonstrated by an overflow from a long General_ServerName property value when calling the InstallBrowserHelperDll function in the Upload Module in the dwa7.dwa7.1 control in dwa7w.dll 7.0.34.1.

AI分析AI驱动

受影响产品

ibmdomino_web_access
6.0
ibmdomino_web_access
6.0.1
ibmdomino_web_access
6.0.1.1
ibmdomino_web_access
6.0.2
ibmdomino_web_access
6.0.3
ibmdomino_web_access
6.0.4
ibmdomino_web_access
6.0.5
ibmdomino_web_access
6.5
ibmdomino_web_access
6.5.1
ibmdomino_web_access
6.5.2
ibmdomino_web_access
6.5.3
ibmdomino_web_access
6.5.4
ibmdomino_web_access
6.5.5
ibmdomino_web_access
7.0
ibmdomino_web_access
7.0.1
ibmlotus_domino_web_access
7.0.1
ibmlotus_domino_web_access
7.0.34.1

可用漏洞利用 (4)

参考资料