Required CVE Record Information
Description
Stack-based buffer overflow in the SPIDERLib.Loader ActiveX control (Spider90.ocx) 9.1.0.4353 in TestDirector (TD) for Mercury Quality Center 9.0 before Patch 12.1, and 8.2 SP1 before Patch 32, allows remote attackers to execute arbitrary code via a long ProgColor property.
References 11 Total
- h20000.www2.hp.com: SSRT071312 vendor-advisory
- vupen.com: ADV-2007-1185 vdb-entry
- securitytracker.com: 1017835 vdb-entry
- http://webnotes.merc-int.com/patches.nsf/c4d68388a23535dc422567d0004bbae2/7a0f7f0efc7905fdc225729f004cf387?OpenDocument
- secunia.com: 24692 third-party-advisory
- kb.cert.org: VU#589097 third-party-advisory
- exchange.xforce.ibmcloud.com: hp-mercury-quality-progcolor-bo(33353) vdb-entry
- h20000.www2.hp.com: HPSBGN02199 vendor-advisory
- securityfocus.com: 23239 vdb-entry
- http://webnotes.merc-int.com/patches.nsf/c4d68388a23535dc422567d0004bbae2/cf109e434c7765eac22572a4006c6e94?OpenDocument
- labs.idefense.com: 20070402 Hewlett-Packard Mercury Quality Center ActiveX Control ProgColor Buffer Overflow Vulnerability third-party-advisory
Updated:
This container includes required additional information provided by the CVE Program for this vulnerability.
References 11 Total
- h20000.www2.hp.com: SSRT071312 vendor-advisoryx_transferred
- vupen.com: ADV-2007-1185 vdb-entryx_transferred
- securitytracker.com: 1017835 vdb-entryx_transferred
- http://webnotes.merc-int.com/patches.nsf/c4d68388a23535dc422567d0004bbae2/7a0f7f0efc7905fdc225729f004cf387?OpenDocument x_transferred
- secunia.com: 24692 third-party-advisoryx_transferred
- kb.cert.org: VU#589097 third-party-advisoryx_transferred
- exchange.xforce.ibmcloud.com: hp-mercury-quality-progcolor-bo(33353) vdb-entryx_transferred
- h20000.www2.hp.com: HPSBGN02199 vendor-advisoryx_transferred
- securityfocus.com: 23239 vdb-entryx_transferred
- http://webnotes.merc-int.com/patches.nsf/c4d68388a23535dc422567d0004bbae2/cf109e434c7765eac22572a4006c6e94?OpenDocument x_transferred
- labs.idefense.com: 20070402 Hewlett-Packard Mercury Quality Center ActiveX Control ProgColor Buffer Overflow Vulnerability third-party-advisoryx_transferred