PT-2007-4749 · Sony · Snc-Df50N+17
Str0Ke
·
Published
2007-06-29
·
Updated
2017-09-29
·
CVE-2007-3488
CVSS v2.0
10
High
| Vector | AV:N/AC:L/Au:N/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions
Sony Network Camera SNC-RZ25N versions 1.30 and earlier
Sony Network Camera SNC-P1 versions 1.29 and earlier
Sony Network Camera SNC-P5 versions 1.29 and earlier
Sony Network Camera SNC-CS10 versions 1.06 and earlier
Sony Network Camera SNC-CS11 versions 1.06 and earlier
Sony Network Camera SNC-DF40N versions 1.18 and earlier
Sony Network Camera SNC-DF70N versions 1.18 and earlier
Sony Network Camera SNC-RZ50N versions 2.22 and earlier
Sony Network Camera SNC-CS50N versions 2.22 and earlier
Sony Network Camera SNC-DF85N versions 1.12 and earlier
Sony Network Camera SNC-DF80N versions 1.12 and earlier
Sony Network Camera SNC-DF50N versions 1.12 and earlier
Sony Network Camera SNC-RX570N/W versions 3.00 and 2.x through 2.31
Sony Network Camera SNC-RX570N/B versions 3.00 and 2.x through 2.31
Sony Network Camera SNC-RX550N/W versions 3.00 and 2.x through 2.31
Sony Network Camera SNC-RX550N/B versions 3.00 and 2.x through 2.31
Sony Network Camera SNC-RX530N/W versions 3.00 and 2.x through 2.31
Sony Network Camera SNC-RX530N/B versions 3.00 and 2.x through 2.31
Description
A heap-based buffer overflow issue exists in the viewer ActiveX control, allowing remote attackers to execute arbitrary code via a long first argument to the
PrmSetNetworkParam method.Recommendations
For Sony Network Camera SNC-RZ25N version 1.30 and earlier, update to version 1.30 or later.
For Sony Network Camera SNC-P1 version 1.29 and earlier, update to version 1.29 or later.
For Sony Network Camera SNC-P5 version 1.29 and earlier, update to version 1.29 or later.
For Sony Network Camera SNC-CS10 version 1.06 and earlier, update to version 1.06 or later.
For Sony Network Camera SNC-CS11 version 1.06 and earlier, update to version 1.06 or later.
For Sony Network Camera SNC-DF40N version 1.18 and earlier, update to version 1.18 or later.
For Sony Network Camera SNC-DF70N version 1.18 and earlier, update to version 1.18 or later.
For Sony Network Camera SNC-RZ50N version 2.22 and earlier, update to version 2.22 or later.
For Sony Network Camera SNC-CS50N version 2.22 and earlier, update to version 2.22 or later.
For Sony Network Camera SNC-DF85N version 1.12 and earlier, update to version 1.12 or later.
For Sony Network Camera SNC-DF80N version 1.12 and earlier, update to version 1.12 or later.
For Sony Network Camera SNC-DF50N version 1.12 and earlier, update to version 1.12 or later.
For Sony Network Camera SNC-RX570N/W versions 3.00 and 2.x through 2.31, update to version 2.31 or later.
For Sony Network Camera SNC-RX570N/B versions 3.00 and 2.x through 2.31, update to version 2.31 or later.
For Sony Network Camera SNC-RX550N/W versions 3.00 and 2.x through 2.31, update to version 2.31 or later.
For Sony Network Camera SNC-RX550N/B versions 3.00 and 2.x through 2.31, update to version 2.31 or later.
For Sony Network Camera SNC-RX530N/W versions 3.00 and 2.x through 2.31, update to version 2.31 or later.
For Sony Network Camera SNC-RX530N/B versions 3.00 and 2.x through 2.31, update to version 2.31 or later.
Exploit
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Snc-Cs10
Snc-Cs11
Snc-Cs50N
Snc-Df40N
Snc-Df50N
Snc-Df70N
Snc-Df80N
Snc-Df85N
Snc-P1
Snc-P5
Snc-Rx530N/B
Snc-Rx530N/W
Snc-Rx550N/B
Snc-Rx550N/W
Snc-Rx570N/B
Snc-Rx570N/W
Snc-Rz25N
Snc-Rz50N