7.5

CVE-2007-3493

A certain ActiveX control in NCTWavChunksEditor2.dll 2.6.1.148 in NCTAudioStudio (NCTAudioStudio2) 2.7, as used by Sienzo DMM and probably other products, allows remote attackers to create or overwrite arbitrary files via a full pathname in the argument to the CreateFile method, a different product than CVE-2007-3400.

Data is provided by the National Vulnerability Database (NVD)
MicrosoftInternet Explorer Version7.0
   MicrosoftWindows Xp Updatesp2
Nctsoft ProductsNctaudiostudio Version2.7
   MicrosoftWindows Xp Updatesp2
Nctsoft ProductsNctwavchunkseditor2.Dll Version2.6.1.148
   MicrosoftWindows Xp Updatesp2
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 43.02% 0.972
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string
nvd@nist.gov 7.5 10 6.4
AV:N/AC:L/Au:N/C:P/I:P/A:P