VulnerabilityModified
CVE-2008-0399
Multiple buffer overflows in Toshiba Surveillance (Surveillix) RecordSend ActiveX control (MeIpCamX.DLL 1.0.0.4) allow remote attackers to execute arbitrary code via long arguments to the (1) SetPort and (2) SetIpAddress methods.
MEDIUM 6.8EPSS 7.98%
Does this matter?
Lower severity and a low EPSS score (7.98%). Track it; it rarely justifies an emergency change on its own.
Description
Multiple buffer overflows in Toshiba Surveillance (Surveillix) RecordSend ActiveX control (MeIpCamX.DLL 1.0.0.4) allow remote attackers to execute arbitrary code via long arguments to the (1) SetPort and (2) SetIpAddress methods.
- CVSS 2.0
- 6.8 MEDIUMAV:N/AC:M/Au:N/C:P/I:P/A:P
- EPSS
- 7.98% probability · 94th percentile
- CISA KEV
- Not listed
- Weakness
- CWE-119
- Affected
- toshiba/surveillix
- Source
- cve@mitre.org
References
- http://retrogod.altervista.org/rgod_toshiba_control.htmlExploit
- http://secunia.com/advisories/28557Vendor Advisory
- http://www.securityfocus.com/bid/27360Exploit
- http://www.vupen.com/english/advisories/2008/0214
- https://exchange.xforce.ibmcloud.com/vulnerabilities/39792
- https://www.exploit-db.com/exploits/4946
- http://retrogod.altervista.org/rgod_toshiba_control.htmlExploit
- http://secunia.com/advisories/28557Vendor Advisory
- http://www.securityfocus.com/bid/27360Exploit
- http://www.vupen.com/english/advisories/2008/0214
- https://exchange.xforce.ibmcloud.com/vulnerabilities/39792
- https://www.exploit-db.com/exploits/4946
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.