peter bassill · operator
$ cve CVE-2008-0399 JSON

CVE-2008-0399 EXPLOIT

6.8
MEDIUM · CVSS 2.0 · EPSS 8% (pctl 95)

Patch early

A public exploit exists.

Description

Multiple buffer overflows in Toshiba Surveillance (Surveillix) RecordSend ActiveX control (MeIpCamX.DLL 1.0.0.4) allow remote attackers to execute arbitrary code via long arguments to the (1) SetPort and (2) SetIpAddress methods.

Scoring

CVSS6.8 (MEDIUM, v2.0)
VectorAV:N/AC:M/Au:N/C:P/I:P/A:P
EPSS7.98% — more likely to be exploited than 95% of all CVEs
WeaknessCWE-119
On CISA KEVno
Public exploityes
Published2008-01-23
Last modified2026-06-16

Affected (1)

VendorProduct
toshibasurveillix

Public exploits

References

→ the Explorer  ·  watch your stack  ·  NVD