VulnerabilityModified
CVE-2007-0111
Buffer overflow in Resco Photo Viewer for PocketPC 4.11 and 6.01, as used in mobile devices running Windows Mobile 5.0, 2003, and 2003SE, allows remote attackers to execute arbitrary code via a crafted PNG image.
MEDIUM 6.8EPSS 2.94%
Does this matter?
Lower severity and a low EPSS score (2.94%). Track it; it rarely justifies an emergency change on its own.
Description
Buffer overflow in Resco Photo Viewer for PocketPC 4.11 and 6.01, as used in mobile devices running Windows Mobile 5.0, 2003, and 2003SE, allows remote attackers to execute arbitrary code via a crafted PNG image.
- CVSS 2.0
- 6.8 MEDIUMAV:N/AC:M/Au:N/C:P/I:P/A:P
- EPSS
- 2.94% probability · 86th percentile
- CISA KEV
- Not listed
- Affected
- resco/photo viewer
- Source
- cve@mitre.org
References
- http://blog.trendmicro.com/flaw-in-3rd-party-app-weakens-windows-mobile/Vendor Advisory
- http://osvdb.org/32644
- http://secunia.com/advisories/23658Vendor Advisory
- http://www.securityfocus.com/bid/21920Vendor Advisory
- http://www.trendmicro.com/vinfo/secadvisories/default6.asp?VName=Vulnerability+in+Resco+Photo+Viewer+6.01+Enabling+Code+Injection+and+Arbitrary+Code+Execution
- http://www.vupen.com/english/advisories/2007/0072
- http://blog.trendmicro.com/flaw-in-3rd-party-app-weakens-windows-mobile/Vendor Advisory
- http://osvdb.org/32644
- http://secunia.com/advisories/23658Vendor Advisory
- http://www.securityfocus.com/bid/21920Vendor Advisory
- http://www.trendmicro.com/vinfo/secadvisories/default6.asp?VName=Vulnerability+in+Resco+Photo+Viewer+6.01+Enabling+Code+Injection+and+Arbitrary+Code+Execution
- http://www.vupen.com/english/advisories/2007/0072
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.