PoC Index

CVE-2012-0708

HIGH 9.3EPSS 31.4%

Heap-based buffer overflow in the Ole API in the CQOle ActiveX control in cqole.dll in IBM Rational ClearQuest 7.1.1 before 7.1.1.9, 7.1.2 before 7.1.2.6, and 8.0.0 before 8.0.0.2 allows remote attackers to execute arbitrary code via a crafted web page that leverages a RegisterSchemaRepoFromFileByDbSet function-prototype mismatch.

CVSS v2.0
9.3 HIGHAV:N/AC:M/Au:N/C:C/I:C/A:C
EPSS
31.38% chance of exploitation in the next 30 days, 98th percentile
Published
2012-04-22
Updated
2024-08-06

Metasploit modules (1)

ExploitDB entries (1)

References

Related