Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Multiple stack-based buffer overflows in the Web Viewer ActiveX controls in CA Output Management Web Viewer 11.0 and 11.5 allow remote attackers to execute arbitrary code via (1) a long SRC property value to the PPSViewer ActiveX control in PPSView.ocx before 1.0.0.7 or (2) a long Title property value to the UOMWV_Helper ActiveX control in UOMWV_HelperActiveX.ocx before 11.5.0.1.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
CA Output Management Web Viewer ActiveX控件栈缓冲区错误漏洞
Vulnerability Description
CA Output Management Web Viewer产品可为用户访问大型主机报告内容提供了基于浏览器和基于标准的Web服务访问方式。 CA Output Management Web Viewer中存在安全漏洞,允许攻击者进行缓冲区溢出攻击。 (1)当创建电子邮件消息时,UOMWV_Helper ActiveX控件(UOMWV_HelperActiveX.ocx)中存在边界错误,远程攻击者可以借助分配给"Title"属性的超长字符串导致基于栈的缓冲区溢出。 (2)当创建debug消息串时,PPS
CVSS Information
N/A
Vulnerability Type
N/A