Get a Pentest and security assessment of your IT network.

Advisories

Danske Bank e-Sec Control Module Error Logging Buffer Overflow

Secunia Research has discovered a vulnerability in Danske Bank Danske e-Sec Control Module ActiveX control, which can be exploited by malicious people to compromise a user’s system. The vulnerability is caused by a boundary error in DanskeSikker.ocx within an error logging function. This can be exploited to cause a stack-based buffer overflow by passing overly long input to certain methods when the ActiveX control has been initialised in a specific manner. Successful exploitation allows execution of arbitrary code when e.g. visiting a malicious web site. Version 3.1.0.48 of DanskeSikker.ocx is affected.

 

You can download this advisory from the following link: https://packetstormsecurity.com/files/download/76732/secunia-danske.txt

Source: https://packetstormsecurity.com/files/76732/Danske-Bank-e-Sec-Control-Module-Error-Logging-Buffer-Overflow.html

Related posts
Advisories

crossZone.txt

Advisories

Secunia Security Advisory 16900

Advisories

Secunia Security Advisory 19793

Advisories

Secunia Security Advisory 22534