Unrated severityNVD Advisory· Published Jan 30, 2014· Updated Apr 29, 2026
CVE-2013-7246
CVE-2013-7246
Description
Buffer overflow in the IconCreate method in an ActiveX control in the DaumGame ActiveX plugin 1.1.0.4 and 1.1.0.5 allows remote attackers to execute arbitrary code via a long string, as exploited in the wild in January 2014.
Affected products
2cpe:2.3:a:daum_communications:daumgame_activex_control:1.1.0.4:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:daum_communications:daumgame_activex_control:1.1.0.4:*:*:*:*:*:*:*
- cpe:2.3:a:daum_communications:daumgame_activex_control:1.1.0.5:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
6- blog.spiderlabs.com/2014/01/daumgame-activex-0day.htmlnvdExploit
- packetstormsecurity.com/files/124886nvdExploit
- www.exploit-db.com/exploits/31179nvdExploit
- www.trustwave.com/spiderlabs/advisories/TWSL2014-002.txtnvdExploit
- seclists.org/fulldisclosure/2014/Jan/132nvd
- exchange.xforce.ibmcloud.com/vulnerabilities/90588nvd
News mentions
0No linked articles in our index yet.