Embarcadero ERStudio Data Architect TSVisualization ActiveX loadExtensionFactory Buffer Overflow Exploit

The vulnerability lies in the failure to validate the size of the input buffer before copying it into a fixed-size buffer on the stack within the handling of the loadExtensionFactory method.
Exploit type: 
Platform: 
Vulnerabilty ID: 
CVE-2014-4647
Product Version: 
2014_R2
Released Date: 
Thursday, September 25, 2014 - 00:00