VulnerabilityModified
CVE-2007-3536
Multiple buffer overflows in the AMX NetLinx VNC (AmxVnc) ActiveX control in AmxVnc.dll 1.0.13.0 allow remote attackers to execute arbitrary code via long (1) Host, (2) Password, or (3) LogFile property values.
HIGH 7.6EPSS 13.7%
Does this matter?
EPSS puts the probability of exploitation in the next 30 days at 13.7%, higher than 96% of all known CVEs. Patch or mitigate before the next change window.
Description
Multiple buffer overflows in the AMX NetLinx VNC (AmxVnc) ActiveX control in AmxVnc.dll 1.0.13.0 allow remote attackers to execute arbitrary code via long (1) Host, (2) Password, or (3) LogFile property values.
- CVSS 2.0
- 7.6 HIGHAV:N/AC:H/Au:N/C:C/I:C/A:C
- EPSS
- 13.67% probability · 96th percentile
- CISA KEV
- Not listed
- Affected
- amx/netlinx vnc activex control
- Source
- cve@mitre.org
References
- http://osvdb.org/37672
- http://secunia.com/advisories/25891Vendor Advisory
- http://www.securityfocus.com/bid/24703
- http://www.vupen.com/english/advisories/2007/2387
- https://exchange.xforce.ibmcloud.com/vulnerabilities/35155
- https://www.exploit-db.com/exploits/4123
- http://osvdb.org/37672
- http://secunia.com/advisories/25891Vendor Advisory
- http://www.securityfocus.com/bid/24703
- http://www.vupen.com/english/advisories/2007/2387
- https://exchange.xforce.ibmcloud.com/vulnerabilities/35155
- https://www.exploit-db.com/exploits/4123
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.