PoC Index

CVE-2008-4922

HIGH 9.3EPSS 32.7%

Buffer overflow in the DjVu ActiveX Control 3.0 for Microsoft Office (DjVu_ActiveX_MSOffice.dll) allows remote attackers to execute arbitrary code via a long (1) ImageURL property, and possibly the (2) Mode, (3) Page, or (4) Zoom properties.

CVSS v2.0
9.3 HIGHAV:N/AC:M/Au:N/C:C/I:C/A:C
EPSS
32.75% chance of exploitation in the next 30 days, 98th percentile
Published
2008-11-04
Updated
2024-08-07

Metasploit modules (1)

ExploitDB entries (2)

References

Related