First published: Tue Aug 14 2012(Updated: )
The ConnectDDNS method in the (1) STWConfigNVR 1.1.13.15 and (2) STWConfig 1.1.14.13 ActiveX controls in Samsung NET-i viewer 1.37.120316 allows remote attackers to execute arbitrary code via unspecified vectors. NOTE: some of these details are obtained from third party information.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Samsung NET-i viewer | =1.37.120316 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2012-4334 is considered a critical vulnerability due to its potential for remote code execution.
To mitigate CVE-2012-4334, update to the latest version of Samsung NET-i viewer or apply any available security patches.
CVE-2012-4334 affects Samsung NET-i viewer version 1.37.120316 and earlier versions.
CVE-2012-4334 can be exploited to execute arbitrary code remotely, potentially allowing unauthorized access and control.
A temporary workaround for CVE-2012-4334 includes limiting access to the affected application and disabling any ActiveX controls if possible.