CVE-2015-4648: Input Validation
Published Jul 6, 2015
·Updated
Stack-based buffer overflow in the Ipropsapi.ipropsapiCtrl.1 ActiveX control in ipropsapivideo in Panasonic Security API (PS-API) ActiveX SDK before 8.10.18 allows remote attackers to execute arbitrary code via a long string to the MulticastAddr method.
Affected Software
1 affected component
Panasonic Security Api Activex Sdk<=8.10.14
Remediation
Event History
Jul 6, 2015
CVE Published
via MITRE·02:00 PM
Data Sourced
via MITRE·02:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2015-4648?
CVE-2015-4648 is classified as high severity due to its potential for remote code execution.
2
How do I fix CVE-2015-4648?
To fix CVE-2015-4648, upgrade to Panasonic Security API ActiveX SDK version 8.10.18 or later.
3
What type of vulnerability is CVE-2015-4648?
CVE-2015-4648 is a stack-based buffer overflow vulnerability.
4
Which software is affected by CVE-2015-4648?
CVE-2015-4648 affects the Panasonic Security API ActiveX SDK versions prior to 8.10.18.
5
What can attackers do exploiting CVE-2015-4648?
Exploiting CVE-2015-4648 allows remote attackers to execute arbitrary code on affected systems.