Files
CVEs-PoC/2008/CVE-2008-3878.md
T
2024-06-18 02:51:15 +02:00

19 lines
778 B
Markdown

### [CVE-2008-3878](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-3878)
![](https://img.shields.io/static/v1?label=Product&message=n%2Fa&color=blue)
![](https://img.shields.io/static/v1?label=Version&message=n%2Fa&color=blue)
![](https://img.shields.io/static/v1?label=Vulnerability&message=n%2Fa&color=brighgreen)
### Description
Stack-based buffer overflow in the Ultra.OfficeControl ActiveX control in OfficeCtrl.ocx 2.0.2008.801 in Ultra Shareware Ultra Office Control allows remote attackers to execute arbitrary code via long strUrl, strFile, and strPostData parameters to the HttpUpload method.
### POC
#### Reference
- http://securityreason.com/securityalert/4200
- https://www.exploit-db.com/exploits/6318
#### Github
No PoCs found on GitHub currently.