Unrated severityNVD Advisory· Published Nov 3, 2010· Updated Apr 29, 2026
CVE-2010-2583
CVE-2010-2583
Description
Stack-based buffer overflow in SonicWALL SSL-VPN End-Point Interrogator/Installer ActiveX control (Aventail.EPInstaller) before 10.5.2 and 10.0.5 hotfix 3 allows remote attackers to execute arbitrary code via long (1) CabURL and (2) Location arguments to the Install3rdPartyComponent method.
Affected products
2cpe:2.3:a:sonicwall:ssl-vpn_end-point_interrogator\/installer_activex_control:*:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:sonicwall:ssl-vpn_end-point_interrogator\/installer_activex_control:*:*:*:*:*:*:*:*range: <=10.5.1
- cpe:2.3:a:sonicwall:ssl-vpn_end-point_interrogator\/installer_activex_control:10.0.5:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
7- secunia.com/advisories/41644nvdVendor Advisory
- secunia.com/secunia_research/2010-117/nvdVendor Advisory
- software.sonicwall.com/Aventail/KB/hotfix/10.0.5/clt-hotfix-10_0_5-003.txtnvd
- www.securityfocus.com/archive/1/514561/100/0/threadednvd
- www.securityfocus.com/bid/44535nvd
- www.securitytracker.com/idnvd
- exchange.xforce.ibmcloud.com/vulnerabilities/62865nvd
News mentions
0No linked articles in our index yet.