vendor:
PDF-Saver Technology
by:
N/A
7,5
CVSS
HIGH
Stack Buffer Overflow (SEH)
119
CWE
Product Name: PDF-Saver Technology
Affected Version From: 3.60.0128
Affected Version To: 3.60.0128
Patch Exists: YES
Related CWE: N/A
CPE: a:tracker_software_products_ltd:pdf-saver_technology
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: N/A
N/A
Tracker Software pdfSaver ActiveX 3.60 (pdfxctrl.dll) Stack Buffer Overflow (SEH)
The PDF Printer Preferences ActiveX suffers from a buffer overflow vulnerability. When a large buffer is sent to the sub_path item of the StoreInRegistry function, and the sub_key item of the InitFromRegistry function, in pdfxctrl.dll module, we get a SEH overwrite. An attacker can gain access to the system of the affected node and execute arbitrary code.
Mitigation:
Ensure that the application is updated to the latest version and all security patches are applied.