Vulnerability Name: | CVE-2007-4891 (CCN-36572) | ||||||||
Assigned: | 2007-09-11 | ||||||||
Published: | 2007-09-11 | ||||||||
Updated: | 2017-09-29 | ||||||||
Summary: | A certain ActiveX control in PDWizard.ocx 6.0.0.9782 and earlier in Microsoft Visual Studio 6.0 exposes dangerous (1) StartProcess, (2) SyncShell, (3) SaveAs, (4) CABDefaultURL, (5) CABFileName, and (6) CABRunFile methods, which allows remote attackers to execute arbitrary programs and have other impacts, as demonstrated using absolute pathnames in arguments to StartProcess and SyncShell. | ||||||||
CVSS v3 Severity: | 10.0 Critical (CCN CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H)
| ||||||||
CVSS v2 Severity: | 6.8 Medium (CVSS v2 Vector: AV:N/AC:M/Au:N/C:P/I:P/A:P) 5.8 Medium (Temporal CVSS v2 Vector: AV:N/AC:M/Au:N/C:P/I:P/A:P/E:POC/RL:U/RC:UR)
8.0 High (CCN Temporal CVSS v2 Vector: AV:N/AC:M/Au:N/C:C/I:C/A:C/E:POC/RL:U/RC:UR)
| ||||||||
Vulnerability Type: | CWE-78 | ||||||||
Vulnerability Consequences: | Gain Access | ||||||||
References: | Source: MITRE Type: CNA CVE-2007-4891 Source: CCN Type: Microsoft Corporation Web site Microsoft Visual Studio Source: OSVDB Type: UNKNOWN 37106 Source: CCN Type: SA26779 Microsoft Visual Studio Two ActiveX Controls Insecure Methods Source: SECUNIA Type: UNKNOWN 26779 Source: MISC Type: UNKNOWN http://shinnai.altervista.org/exploits/txt/TXT_AZJ5bXwXvMARqwtfe97I.html Source: CCN Type: OSVDB ID: 37106 Microsoft Visual Studio ActiveX (PDWizard.ocx) Multiple Method Arbitrary Program Execution Source: BID Type: Exploit 25638 Source: CCN Type: BID-25638 Microsoft Visual Studio PDWizard.ocx ActiveX Control Multiple Remote Vulnerabilities Source: XF Type: UNKNOWN visualstudio-pdwizard-code-execution(36572) Source: XF Type: UNKNOWN visualstudio-pdwizard-code-execution(36572) Source: EXPLOIT-DB Type: UNKNOWN 4393 | ||||||||
Vulnerable Configuration: | Configuration 1:![]() | ||||||||
BACK |