Oval Definition:oval:org.mitre.oval:def:2055
Revision Date:2007-11-06Version:42
Title:Vulnerability in Crystal Reports for Microsoft Visual Studio Could Allow Remote Code Execution
Description:Stack-based buffer overflow in Visual Studio Crystal Reports for Microsoft Visual Studio .NET 2002 and 2002 SP1, .NET 2003 and 2003 SP1, and 2005 and 2005 SP1 (formerly Business Objects Crystal Reports XI Professional) allows user-assisted remote attackers to execute arbitrary code via a crafted RPT file.
Family:windowsClass:vulnerability
Status:ACCEPTEDReference(s):CVE-2006-6133
Platform(s):Microsoft Windows 2000
Microsoft Windows Server 2003
Microsoft Windows Vista
Microsoft Windows XP
Product(s):Microsoft Visual Studio
Definition Synopsis
  • .NET 2002, SP1
  • Microsoft Visual Studio .NET 2002 SP1 is installed
  • AND crpe32.dll version is less than 9.1.2.1871
  • OR .NET 2003
  • Microsoft Visual Studio .NET 2003 is installed
  • AND crpe32.dll version is less than 9.1.2.1871
  • OR .NET 2003
  • Microsoft Visual Studio 2005 is installed.
  • AND crpe32.dll version is less than 10.2.0.1222
  • BACK