CVE-2012-0267

Severity CVSS v4.0:
Pending analysis
Type:
CWE-20 Input Validation
Publication date:
15/01/2012
Last modified:
11/04/2025

Description

The StopModule method in the NTR ActiveX control before 2.0.4.8 allows remote attackers to execute arbitrary code via a crafted lModule parameter that triggers use of an arbitrary memory address as a function pointer.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:ntrglobal:ntr_activex_control:*:*:*:*:*:*:*:* 1.1.8 (including)