>> Anzio Web Print Object "mainurl" Remote Buffer Overflow Vulnerability
Title : Anzio Web Print Object "mainurl" Remote Buffer Overflow Vulnerability VUPEN ID : VUPEN/ADV-2008-2417 CVE ID : CVE-2008-3480 CWE ID : CWE-119
Rated as : Critical
Remotely Exploitable : Yes Locally Exploitable : Yes Release Date : 2008-08-21
Technical Description
A vulnerability has been identified in Anzio Web Print Object (WePO) ActiveX control, which could be exploited by remote attackers to take complete control of an affected system. This issue is caused by a buffer overflow error when handling an overly long "mainurl" parameter, which could be exploited by remote attackers to execute arbitrary commands by tricking a user into visiting a specially crafted web page.