CVE-2007-4891
A certain ActiveX control in PDWizard.ocx 6.0.0.9782 and earlier in Microsoft Visual Studio 6.0 exposes dangerous (1) StartProcess, (2) SyncShell, (3) SaveAs, (4) CABDefaultURL, (5) CABFileName, and (6) CABRunFile methods, which allows remote attackers…
Does this matter?
EPSS puts the probability of exploitation in the next 30 days at 31.0%, higher than 98% of all known CVEs. Patch or mitigate before the next change window.
Description
A certain ActiveX control in PDWizard.ocx 6.0.0.9782 and earlier in Microsoft Visual Studio 6.0 exposes dangerous (1) StartProcess, (2) SyncShell, (3) SaveAs, (4) CABDefaultURL, (5) CABFileName, and (6) CABRunFile methods, which allows remote attackers to execute arbitrary programs and have other impacts, as demonstrated using absolute pathnames in arguments to StartProcess and SyncShell.
- CVSS 2.0
- 6.8 MEDIUMAV:N/AC:M/Au:N/C:P/I:P/A:P
- EPSS
- 31.00% probability · 98th percentile
- CISA KEV
- Not listed
- Weakness
- CWE-78
- Affected
- microsoft/visual studio
- Source
- cve@mitre.org
References
- http://osvdb.org/37106
- http://secunia.com/advisories/26779
- http://shinnai.altervista.org/exploits/txt/TXT_AZJ5bXwXvMARqwtfe97I.html
- http://www.securityfocus.com/bid/25638Exploit
- https://exchange.xforce.ibmcloud.com/vulnerabilities/36572
- https://www.exploit-db.com/exploits/4393
- http://osvdb.org/37106
- http://secunia.com/advisories/26779
- http://shinnai.altervista.org/exploits/txt/TXT_AZJ5bXwXvMARqwtfe97I.html
- http://www.securityfocus.com/bid/25638Exploit
- https://exchange.xforce.ibmcloud.com/vulnerabilities/36572
- https://www.exploit-db.com/exploits/4393
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.