Vulnerability Description
DVRemoteAx.ax 2.1.0.39 in the DVR Remote ActiveX control allows remote attackers to execute arbitrary code via a crafted DVRobot.dll file in a manifest directory on a web server.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Sunplus-Tech | Dvr Remote Activex Control | 2.1.0.39 |
Related Weaknesses (CWE)
References
- http://secunia.com/secunia_research/2011-80/Vendor Advisory
- http://www.securityfocus.com/archive/1/520549/100/100/threaded
- http://secunia.com/secunia_research/2011-80/Vendor Advisory
- http://www.securityfocus.com/archive/1/520549/100/100/threaded
FAQ
What is CVE-2011-3828?
CVE-2011-3828 is a vulnerability with a CVSS score of 9.3 (HIGH). DVRemoteAx.ax 2.1.0.39 in the DVR Remote ActiveX control allows remote attackers to execute arbitrary code via a crafted DVRobot.dll file in a manifest directory on a web server.
How severe is CVE-2011-3828?
CVE-2011-3828 has been rated HIGH with a CVSS base score of 9.3/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2011-3828?
Check the references section above for vendor advisories and patch information. Affected products include: Sunplus-Tech Dvr Remote Activex Control.