vendor:
Ask Toolbar
by:
MC
7,5
CVSS
HIGH
Buffer Overflow
119
CWE
Product Name: Ask Toolbar
Affected Version From: 4.0.2.53
Affected Version To: 4.0.2.53
Patch Exists: NO
Related CWE: CVE-2007-5107
CPE: a:ask.com:ask_toolbar
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: Windows XP SP0/SP1 Pro English, Windows 2000 Pro English ALL
2007
Ask.com Toolbar askBar.dll ActiveX Control Buffer Overflow
This module exploits a stack buffer overflow in Ask.com Toolbar 4.0.2.53. An attacker may be able to excute arbitrary code by sending an overly long string to the 'ShortFormat()' method in askbar.dll.
Mitigation:
No known mitigation or remediation for this vulnerability