PT-2007-4749 · Sony · Snc-Df50N+17

Str0Ke

·

Published

2007-06-29

·

Updated

2017-09-29

·

CVE-2007-3488

CVSS v2.0

10

High

VectorAV:N/AC:L/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Sony Network Camera SNC-RZ25N versions 1.30 and earlier Sony Network Camera SNC-P1 versions 1.29 and earlier Sony Network Camera SNC-P5 versions 1.29 and earlier Sony Network Camera SNC-CS10 versions 1.06 and earlier Sony Network Camera SNC-CS11 versions 1.06 and earlier Sony Network Camera SNC-DF40N versions 1.18 and earlier Sony Network Camera SNC-DF70N versions 1.18 and earlier Sony Network Camera SNC-RZ50N versions 2.22 and earlier Sony Network Camera SNC-CS50N versions 2.22 and earlier Sony Network Camera SNC-DF85N versions 1.12 and earlier Sony Network Camera SNC-DF80N versions 1.12 and earlier Sony Network Camera SNC-DF50N versions 1.12 and earlier Sony Network Camera SNC-RX570N/W versions 3.00 and 2.x through 2.31 Sony Network Camera SNC-RX570N/B versions 3.00 and 2.x through 2.31 Sony Network Camera SNC-RX550N/W versions 3.00 and 2.x through 2.31 Sony Network Camera SNC-RX550N/B versions 3.00 and 2.x through 2.31 Sony Network Camera SNC-RX530N/W versions 3.00 and 2.x through 2.31 Sony Network Camera SNC-RX530N/B versions 3.00 and 2.x through 2.31
Description A heap-based buffer overflow issue exists in the viewer ActiveX control, allowing remote attackers to execute arbitrary code via a long first argument to the PrmSetNetworkParam method.
Recommendations For Sony Network Camera SNC-RZ25N version 1.30 and earlier, update to version 1.30 or later. For Sony Network Camera SNC-P1 version 1.29 and earlier, update to version 1.29 or later. For Sony Network Camera SNC-P5 version 1.29 and earlier, update to version 1.29 or later. For Sony Network Camera SNC-CS10 version 1.06 and earlier, update to version 1.06 or later. For Sony Network Camera SNC-CS11 version 1.06 and earlier, update to version 1.06 or later. For Sony Network Camera SNC-DF40N version 1.18 and earlier, update to version 1.18 or later. For Sony Network Camera SNC-DF70N version 1.18 and earlier, update to version 1.18 or later. For Sony Network Camera SNC-RZ50N version 2.22 and earlier, update to version 2.22 or later. For Sony Network Camera SNC-CS50N version 2.22 and earlier, update to version 2.22 or later. For Sony Network Camera SNC-DF85N version 1.12 and earlier, update to version 1.12 or later. For Sony Network Camera SNC-DF80N version 1.12 and earlier, update to version 1.12 or later. For Sony Network Camera SNC-DF50N version 1.12 and earlier, update to version 1.12 or later. For Sony Network Camera SNC-RX570N/W versions 3.00 and 2.x through 2.31, update to version 2.31 or later. For Sony Network Camera SNC-RX570N/B versions 3.00 and 2.x through 2.31, update to version 2.31 or later. For Sony Network Camera SNC-RX550N/W versions 3.00 and 2.x through 2.31, update to version 2.31 or later. For Sony Network Camera SNC-RX550N/B versions 3.00 and 2.x through 2.31, update to version 2.31 or later. For Sony Network Camera SNC-RX530N/W versions 3.00 and 2.x through 2.31, update to version 2.31 or later. For Sony Network Camera SNC-RX530N/B versions 3.00 and 2.x through 2.31, update to version 2.31 or later.

Exploit

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2007-3488

Affected Products

Snc-Cs10
Snc-Cs11
Snc-Cs50N
Snc-Df40N
Snc-Df50N
Snc-Df70N
Snc-Df80N
Snc-Df85N
Snc-P1
Snc-P5
Snc-Rx530N/B
Snc-Rx530N/W
Snc-Rx550N/B
Snc-Rx550N/W
Snc-Rx570N/B
Snc-Rx570N/W
Snc-Rz25N
Snc-Rz50N