Vulnerability Description
Buffer overflow in MSN Setup BBS 4.71.0.10 ActiveX control (setupbbs.ocx) allows a remote attacker to execute arbitrary commands via the methods (1) vAddNewsServer or (2) bIsNewsServerConfigured.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Microsoft | Msn Setup Bulletin Board Services | 4.71.0.10 |
References
- http://www.securityfocus.com/archive/1/28719ExploitPatchVendor Advisory
- http://www.securityfocus.com/bid/668ExploitPatchVendor Advisory
- https://exchange.xforce.ibmcloud.com/vulnerabilities/3310
- http://www.securityfocus.com/archive/1/28719ExploitPatchVendor Advisory
- http://www.securityfocus.com/bid/668ExploitPatchVendor Advisory
- https://exchange.xforce.ibmcloud.com/vulnerabilities/3310
FAQ
What is CVE-1999-1484?
CVE-1999-1484 is a vulnerability with a CVSS score of 7.5 (HIGH). Buffer overflow in MSN Setup BBS 4.71.0.10 ActiveX control (setupbbs.ocx) allows a remote attacker to execute arbitrary commands via the methods (1) vAddNewsServer or (2) bIsNewsServerConfigured.
How severe is CVE-1999-1484?
CVE-1999-1484 has been rated HIGH with a CVSS base score of 7.5/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-1999-1484?
Check the references section above for vendor advisories and patch information. Affected products include: Microsoft Msn Setup Bulletin Board Services.