ID

VAR-E-201203-0426


TITLE

Cisco Wireless-G PTZ Internet Video Camera WVC200 'PlayerPT.ocx' Buffer Overflow Vulnerability

Trust: 0.3

sources: BID: 52673

DESCRIPTION

Cisco Wireless-G PTZ Internet Video Camera WVC200 is prone to a buffer-overflow vulnerability because the application fails to perform adequate boundary checks on user-supplied data.
Successfully exploiting this issue allows remote attackers to execute arbitrary code in the context of the application using an affected ActiveX control (typically Internet Explorer). Failed exploit attempts will likely result in denial-of-service conditions.
Cisco Wireless-G PTZ Internet Video Camera WVC200 1.0.0.15 is vulnerable; other versions may also be affected.

Trust: 0.3

sources: BID: 52673

AFFECTED PRODUCTS

vendor:ciscomodel:wireless-g ptz internet video camera wvc200scope:eqversion:1.0.0.15

Trust: 0.3

sources: BID: 52673

EXPLOIT

To exploit this issue, an attacker must entice an unsuspecting user to view a specially crafted webpage.
The following proof-of-concept is available:
Bullet list:
<li><a href="/data/vulnerabilities/exploits/52673.html">/data/vulnerabilities/exploits/52673.html</a></li>

Trust: 0.3

sources: BID: 52673

PRICE

Free

Trust: 0.3

sources: BID: 52673

TYPE

Input Validation Error

Trust: 0.3

sources: BID: 52673

CREDITS

rgod

Trust: 0.3

sources: BID: 52673

EXTERNAL IDS

db:BIDid:52673

Trust: 0.3

sources: BID: 52673

REFERENCES

url:http://www.cisco.com/

Trust: 0.3

sources: BID: 52673

SOURCES

db:BIDid:52673

LAST UPDATE DATE

2022-07-27T09:35:43.215000+00:00


SOURCES UPDATE DATE

db:BIDid:52673date:2012-03-22T00:00:00

SOURCES RELEASE DATE

db:BIDid:52673date:2012-03-22T00:00:00