9.3

CVE-2007-2588

Exploit
Multiple buffer overflows in the Office Viewer OCX ActiveX control (oa.ocx) 3.2 allow remote attackers to cause a denial of service (crash) or possibly execute arbitrary code via a long argument to the (1) HttpDownloadFile, (2) Open, (3) OpenWebFile, (4) DoOleCommand, (5) FTPDownloadFile, (6) FTPUploadFile, (7) HttpUploadFile, (8) Save, or (9) SaveWebFile function.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Office OcxOffice Viewer Ocx Version3.2
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 7.04% 0.934
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 9.3 8.6 10
AV:N/AC:M/Au:N/C:C/I:C/A:C
Es wurden noch keine Informationen zu CWE veröffentlicht.
http://moaxb.blogspot.com/2007/05/moaxb-04-office-viewer-oaocx-v-32.html
http://osvdb.org/34335
http://secunia.com/advisories/25143
Vendor Advisory
http://www.securityfocus.com/bid/23811
Exploit
http://www.shinnai.altervista.org/moaxb/20070504/oa.txt
http://www.vupen.com/english/advisories/2007/1664
https://exchange.xforce.ibmcloud.com/vulnerabilities/34067