vendor:
InTrust
by:
Not mentioned
7.5
CVSS
HIGH
Uninitialized Pointer Remote Code Execution
Not mentioned
CWE
Product Name: InTrust
Affected Version From: 10.4.x
Affected Version To: Not mentioned
Patch Exists: NO
Related CWE: Not mentioned
CPE: Not mentioned
Platforms Tested: Windows
Not mentioned
Quest InTrust 10.4.x Annotation Objects ActiveX Control
By invoking the Add() method is possible to call inside a memory region of choice set by the attacker through ex. heap spray or other techniques.
Mitigation:
Not mentioned