HIGH · 7.5

CVE-2014-10011

Stack-based buffer overflow in UltraCamLib in the UltraCam ActiveX Control (UltraCamX.ocx) for the TRENDnet SecurView camera TV-IP422WN allows remote attackers to execute arbitrary code via a long str...

Vulnerability Description

Stack-based buffer overflow in UltraCamLib in the UltraCam ActiveX Control (UltraCamX.ocx) for the TRENDnet SecurView camera TV-IP422WN allows remote attackers to execute arbitrary code via a long string to the (1) CGI_ParamSet, (2) OpenFileDlg, (3) SnapFileName, (4) Password, (5) SetCGIAPNAME, (6) AccountCode, or (7) RemoteHost function.

CVSS Score

7.5

HIGH

AV:N/AC:L/Au:N/C:P/I:P/A:P
Confidentiality
PARTIAL
Integrity
PARTIAL
Availability
PARTIAL

Affected Products

VendorProductVersions
TrendnetTv-Ip422W-
TrendnetTv-Ip422Wn-

Related Weaknesses (CWE)

References

FAQ

What is CVE-2014-10011?

CVE-2014-10011 is a vulnerability with a CVSS score of 7.5 (HIGH). Stack-based buffer overflow in UltraCamLib in the UltraCam ActiveX Control (UltraCamX.ocx) for the TRENDnet SecurView camera TV-IP422WN allows remote attackers to execute arbitrary code via a long str...

How severe is CVE-2014-10011?

CVE-2014-10011 has been rated HIGH with a CVSS base score of 7.5/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2014-10011?

Check the references section above for vendor advisories and patch information. Affected products include: Trendnet Tv-Ip422W, Trendnet Tv-Ip422Wn.