CVE-2012-5896
17.11.2012, 21:55
The Annotation Objects Extension ActiveX control in AnnotateX.dll in Quest InTrust 10.4.0.853 and earlier does not properly implement the Add method, which allows remote attackers to execute arbitrary code via a memory address in the first argument, related to an "uninitialized pointer."Enginsight
| Vendor | Product | Version |
|---|---|---|
| quest | intrust | 𝑥 ≤ 10.4.0.853 |
| quest | intrust | 10.1 |
| quest | intrust | 10.2.5 |
| quest | intrust | 10.3 |
| quest | intrust | 10.4 |
𝑥
= Vulnerable software versions
References