Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Derek Protas

#27180of 53,632
9.3Total CVSS
Vulnerabilities · 1
PT-2006-5038
9.3
2006-08-18
Ibm · Ibm Access Support Egatherer · CVE-2006-4221
**Name of the Vulnerable Software and Affected Versions** IBM Access Support eGatherer versions prior to 3.20.0284.0 **Description** The issue is related to a stack-based buffer overflow in the ActiveX control. This can be exploited by remote attackers to execute arbitrary code via a long `filename` parameter to the `RunEgatherer` method. **Recommendations** For versions prior to 3.20.0284.0, update to version 3.20.0284.0 or later to resolve the issue. As a temporary workaround, consider restricting access to the `RunEgatherer` method to minimize the risk of exploitation.