CVE-2013-0728

Multiple stack-based buffer overflows in NCSAddOn.dll in the ERDAS APOLLO ECWP plugin before 13.00.0001 for Internet Explorer, Firefox, and Chrome allow remote attackers to execute arbitrary code via a long property value.
References
Link Resource
http://secunia.com/advisories/51647 Vendor Advisory
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:hexagon:erdas_apollo_ecwp:13.00.0000:-:*:*:*:chrome:*:*
cpe:2.3:a:hexagon:erdas_apollo_ecwp:13.00.0000:-:*:*:*:firefox:*:*
cpe:2.3:a:hexagon:erdas_apollo_ecwp:13.00.0000:-:*:*:*:internet_explorer:*:*

History

No history.

Information

Published : 2013-04-25 03:36

Updated : 2024-02-04 18:16


NVD link : CVE-2013-0728

Mitre link : CVE-2013-0728

CVE.ORG link : CVE-2013-0728


JSON object : View

Products Affected

hexagon

  • erdas_apollo_ecwp
CWE
CWE-119

Improper Restriction of Operations within the Bounds of a Memory Buffer