Heap-based buffer overflow in Borland idsql32.dll 5.1.0.4, as used by RevilloC MailServer; 5.2.0.2 as used by Borland Developer Studio 2006; and possibly other versions allows remote attackers to execute arbitrary code via a long SQL statement, related to use of the DbiQExec function.
2006-12-01T01:28:00.000
2025-04-09T00:30:58.490
Deferred
CVSSv2: 7.5 (HIGH)
AV:N/AC:L/Au:N/C:P/I:P/A:P
10.0
6.4
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | borland_software | c\+\+_builder | 5.x | Yes |
Application | borland_software | c\+\+_builder | 6.x | Yes |
Application | borland_software | c\+\+_builder | 2006 | Yes |
Application | borland_software | c_builder | 2006 | Yes |
Application | borland_software | delphi | 5.x | Yes |
Application | borland_software | delphi | 6.x | Yes |
Application | borland_software | delphi | 7.x | Yes |
Application | borland_software | delphi | 2006 | Yes |
Application | borland_software | developer_studio | 2006 | Yes |
Application | borland_software | idsql32.dll | 5.1.0.2 | Yes |
Application | borland_software | idsql32.dll | 5.1.0.4 | Yes |
Application | revilloc | mailserver | * | Yes |