vendor:
Linksys WVC200 Wireless-G PTZ Internet Video Camera
by:
rgod
9.8
CVSS
CRITICAL
Buffer Overflow
119
CWE
Product Name: Linksys WVC200 Wireless-G PTZ Internet Video Camera
Affected Version From: 1.0.0.15
Affected Version To: 1.0.0.15
Patch Exists: NO
Related CWE:
CPE:
Platforms Tested: Windows
Cisco Linksys WVC200 Wireless-G PTZ Internet Video Camera PlayerPT ActiveX Control PlayerPT.ocx sprintf Buffer Overflow Vulnerability
The SetSource() method in the PlayerPT ActiveX Control Module is vulnerable to a buffer overflow. This can be exploited by an attacker to execute arbitrary code or cause a denial of service condition.
Mitigation:
Update to a patched version of the PlayerPT ActiveX Control Module or disable the use of ActiveX controls in the device web interface.