Buffer Overflow Vulnerability in Panasonic Security API's ActiveX Control
CVE-2015-4648

Currently unrated

Key Information:

Vendor

Panasonic

Vendor
CVE Published:
6 July 2015

What is CVE-2015-4648?

A stack-based buffer overflow vulnerability exists in the ActiveX control (ipropsapi.ipropsapiCtrl.1) of the Panasonic Security API (PS-API) prior to version 8.10.18. This issue can be exploited by remote attackers who send a specially crafted long string to the MulticastAddr method, potentially allowing them to execute arbitrary code on the affected system. It is crucial for users to update their installations to mitigate the risks associated with this vulnerability. For detailed information, refer to the Panasonic security advisory and Zero Day Initiative's advisory.

References

EPSS Score

6% chance of being exploited in the next 30 days.

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.