CVE-2006-6488
Last modified
CVE-2006-6488 is a vulnerability of currently unknown severity. Stack-based buffer overflow in the DoModal function in the Dialog Wrapper Module ActiveX control (DlgWrapper.dll) before 8.4.166.0, as used by ICONICS OPC Enabled Gauge, Switch, and Vessel ActiveX, allows remote attackers to execute arbitrary code via a long (1) FileName or (2) Filter argument.. EPSS estimates a 7.79% chance of exploitation in the next 30 days.
Description
Stack-based buffer overflow in the DoModal function in the Dialog Wrapper Module ActiveX control (DlgWrapper.dll) before 8.4.166.0, as used by ICONICS OPC Enabled Gauge, Switch, and Vessel ActiveX, allows remote attackers to execute arbitrary code via a long (1) FileName or (2) Filter argument.
Metrics
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Iconics | Dialog Wrapper Module Activex Control | <= 8.4.165.0 |
References
- http://secunia.com/advisories/23583Vendor Advisory
- http://www.kb.cert.org/vuls/id/251969Third Party Advisory, US Government Resource
- http://secunia.com/advisories/23583Vendor Advisory
- http://www.kb.cert.org/vuls/id/251969Third Party Advisory, US Government Resource
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2006-6488?
How severe is CVE-2006-6488?
How do I fix CVE-2006-6488?
Are you affected by CVE-2006-6488?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
