CVE-2007-0391
 
Severity Score
9.8
*CVSS v3
Exploit Likelihood
*EPSS
Affected Versions
*CPE
Public Exploits
0
*Multiple Sources
Exploited in Wild
-
*KEV
Decision
-
*SSVC
Descriptions
Format string vulnerability in the log creation functionality of BitDefender Client Professional Plus 8.02 allows attackers to execute arbitrary code via certain scan job settings.
Vulnerabilidad de de formato de cadena en la funcionalidad de creación de log del BitDefender Client Professional Plus 8.02 permite a atacantes remotos ejecutar código de su elección a través de ciertas tareas de configuración de búsqueda.
*Credits:
N/A
CVSS Scores
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality
Integrity
Availability
Attack Vector
Attack Complexity
Authentication
Confidentiality
Integrity
Availability
* Common Vulnerability Scoring System
SSVC
- Decision:-
Exploitation
Automatable
Tech. Impact
* Organization's Worst-case Scenario
Timeline
- 2007-01-19 CVE Reserved
- 2007-01-19 CVE Published
- 2024-08-07 CVE Updated
- 2024-09-24 EPSS Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
- ---------- First Exploit
CWE
CAPEC
References (6)
URL | Tag | Source |
---|---|---|
http://lists.grok.org.uk/pipermail/full-disclosure/2007-January/051883.html | Mailing List | |
http://www.bitdefender.com/KB325-en--Format-string-vulnerability.html | X_refsource_confirm | |
http://www.securityfocus.com/archive/1/457414/100/0/threaded | Mailing List | |
http://www.securityfocus.com/bid/22128 | Vdb Entry | |
http://www.vupen.com/english/advisories/2007/0253 | Vdb Entry | |
https://exchange.xforce.ibmcloud.com/vulnerabilities/31608 | Vdb Entry |
URL | Date | SRC |
---|
URL | Date | SRC |
---|
URL | Date | SRC |
---|
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Bitdefender Search vendor "Bitdefender" | Bitdefender Client Search vendor "Bitdefender" for product "Bitdefender Client" | professional_plus_8.02 Search vendor "Bitdefender" for product "Bitdefender Client" and version "professional_plus_8.02" | - |
Affected
|