← back
CVE-2008-4384

CVE-2008-4384

43Vexday Risk Score

Patch soon. It has a working public exploit.

ssvc Attendepss 29%
from disclosure to weapon579 days
Published on NVDOct 7
1st PoC+579d
metasploitOct 6
exploitation probability
29%top 2% of all CVEs
observed exploitation
nono source reports it
1 public exploit(s)
Multiple stack-based buffer overflows in MGI Software LPViewer ActiveX control (LPControl.dll), as acquired by Roxio and iseemedia, allow remote attackers to execute arbitrary code via the (1) url, (2) toolbar, and (3) enableZoomPastMax methods.
Affected products
n/a · n/a
⚠ Public resources, to assess the exposure of systems you control or are authorized to test. Test only with authorization.