Unrated severityNVD Advisory· Published Dec 22, 2010· Updated Apr 29, 2026
CVE-2010-2590
CVE-2010-2590
Description
Heap-based buffer overflow in the CrystalReports12.CrystalPrintControl.1 ActiveX control in PrintControl.dll 12.3.2.753 in SAP Crystal Reports 2008 SP3 Fix Pack 3.2 allows remote attackers to execute arbitrary code via a long ServerResourceVersion property value.
Affected products
1- cpe:2.3:a:sap:crystal_reports:2008:sp3_fp3.2:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
9- pocoftheday.blogspot.com/2010/12/crystal-reports-viewer-1200549-activex.htmlnvdExploit
- www.exploit-db.com/exploits/15733nvdExploit
- www.securityfocus.com/bid/45387nvdExploit
- secunia.com/advisories/42305nvdVendor Advisory
- secunia.com/secunia_research/2010-135/nvdVendor Advisory
- www.osvdb.org/69917nvd
- www.securityfocus.com/archive/1/515369/100/0/threadednvd
- www.securitytracker.com/idnvd
- service.sap.com/sap/support/notes/1539269nvd
News mentions
0No linked articles in our index yet.