Buffer Overflow in SPIDERLib.Loader ActiveX Control for Mercury Quality Center
CVE-2007-1819

Currently unrated

Key Information:

Vendor
HP
Vendor
CVE Published:
2 April 2007

Summary

The SPIDERLib.Loader ActiveX control (Spider90.ocx) is susceptible to a stack-based buffer overflow that could allow an attacker to execute arbitrary code remotely. This vulnerability affects specific versions of Mercury Quality Center prior to designated patches. By sending a specially crafted long ProgColor property to the control, an attacker might exploit this flaw and gain unauthorized access or control over the affected system, emphasizing the need for immediate patch implementation to mitigate risks.

References

EPSS Score

75% chance of being exploited in the next 30 days.

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.