CVE-2013-0728: Hexagon Erdas Apollo Ecwp

High severity, CVSS 10.0. EPSS: 4.4% chance of exploitation in the next 30 days.

Multiple stack-based buffer overflows in NCSAddOn.dll in the ERDAS APOLLO ECWP plugin before 13.00.0001 for Internet Explorer, Firefox, and Chrome allow remote attackers to execute arbitrary code via a long property value.

Affected products

  • Hexagon Erdas Apollo Ecwp: version 13.00.0000 only

Published 2013-04-25. Last modified 2026-06-16.