PoC Index

CVE-2011-0027

HIGH 9.3EPSS 54.4%

Microsoft Data Access Components (MDAC) 2.8 SP1 and SP2, and Windows Data Access Components (WDAC) 6.0, does not properly validate memory allocation for internal data structures, which allows remote attackers to execute arbitrary code, possibly via a large CacheSize property that triggers an integer wrap and a buffer overflow, aka "ADO Record Memory Vulnerability." NOTE: this might be a duplicate of CVE-2010-1117 or CVE-2010-1118.

CVSS v2.0
9.3 HIGHAV:N/AC:M/Au:N/C:C/I:C/A:C
EPSS
54.37% chance of exploitation in the next 30 days, 99th percentile
Published
2011-01-12
Updated
2024-08-06

ExploitDB entries (1)

References

Related