PT-2007-3904 · Barcodewiz · Barcodewiz Activex Control

Published

2007-05-09

·

Updated

2017-07-29

·

CVE-2007-2585

CVSS v2.0

9.3

High

VectorAV:N/AC:M/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions BarCodeWiz ActiveX control versions 2.0 through 2.52
Description The issue is a stack-based buffer overflow in the Verify function of the BarCodeWiz ActiveX control, which allows remote attackers to execute arbitrary code via a long argument.
Recommendations For versions 2.0 through 2.52, consider disabling the Verify function in the BarCodeWiz ActiveX control until a patch is available.

Exploit

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2007-2585

Affected Products

Barcodewiz Activex Control