CVE-2008-4384
43Vexday Risk Score
Patch soon. It has a working public exploit.
ssvc Attendepss 29%
from disclosure to weapon579 days
Published on NVDOct 7
1st PoC+579d
metasploitOct 6
exploitation probability
29%top 2% of all CVEs
observed exploitation
nono source reports it
1 public exploit(s)
Multiple stack-based buffer overflows in MGI Software LPViewer ActiveX control (LPControl.dll), as acquired by Roxio and iseemedia, allow remote attackers to execute arbitrary code via the (1) url, (2) toolbar, and (3) enableZoomPastMax methods.
Affected products
n/a · n/apublic PoCs found — 1
exploitdbwww.exploit-db.com/exploits/16571unverified⚠ Public resources, to assess the exposure of systems you control or are authorized to test. Test only with authorization.