High severity8.8NVD Advisory· Published Nov 10, 2017· Updated May 13, 2026
CVE-2017-12969
CVE-2017-12969
Description
Buffer overflow in the ViewerCtrlLib.ViewerCtrl ActiveX control in Avaya IP Office Contact Center before 10.1.1 allows remote attackers to cause a denial of service (heap corruption and crash) or execute arbitrary code via a long string to the open method.
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
6- downloads.avaya.com/css/P8/documents/101044091nvdVendor Advisory
- packetstormsecurity.com/files/144882/Avaya-IP-Office-IPO-10.1-Active-X-Buffer-Overflow.htmlnvdThird Party AdvisoryVDB Entry
- seclists.org/fulldisclosure/2017/Nov/17nvdMailing ListThird Party Advisory
- www.securityfocus.com/bid/101667nvdThird Party AdvisoryVDB Entry
- www.exploit-db.com/exploits/43120/nvdThird Party AdvisoryVDB Entry
- hyp3rlinx.altervista.org/advisories/AVAYA-OFFICE-IP-%28IPO%29-v9.1.0-10.1-VIEWERCTRL-ACTIVE-X-BUFFER-OVERFLOW-0DAY.txtnvd
News mentions
0No linked articles in our index yet.