Buffer overflow in the Yahoo! Webcam Upload ActiveX control in ywcupl.dll 2.0.1.4 for Yahoo! Messenger 8.1.0.249 allows remote attackers to execute arbitrary code via a long server property value to the send method. NOTE: some of these details are obtained from third party information.
2007-06-11T18:30:00.000
2025-04-09T00:30:58.490
Deferred
CVSSv2: 9.3 (HIGH)
AV:N/AC:M/Au:N/C:C/I:C/A:C
8.6
10.0
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | yahoo | messenger | 2.0.1.4 | Yes |
Application | yahoo | messenger | 8.0 | Yes |
Application | yahoo | messenger | 8.0.0.863 | Yes |
Application | yahoo | messenger | 8.0.1 | Yes |
Application | yahoo | messenger | 8.0_2005.1.1.4 | Yes |
Application | yahoo | messenger | 8.1.0.249 | Yes |