VYPR

Access Support eGatherer

by IBM

CVEs (2)

  • CVE-2006-4221Aug 18, 2006
    risk 0.04cvss epss 0.46

    Stack-based buffer overflow in the IBM Access Support eGatherer ActiveX control before 3.20.0284.0 allows remote attackers to execute arbitrary code via a long filename parameter to the RunEgatherer method.

  • CVE-2004-2663Dec 31, 2004
    risk 0.00cvss epss 0.02

    The (1) SetDebugging and (2) RunEgatherer methods in IBM Access Support eGatherer ActiveX control 2.0.0.16 allow remote attackers to create files with arbitrary content, as demonstrated by creating a .hta file in a Startup folder.