CVE-2007-0603
 
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
0Exploited in Wild
-Decision
Descriptions
PGP Desktop before 9.5.1 does not validate data objects received over the (1) \pipe\pgpserv named pipe for PGPServ.exe or the (2) \pipe\pgpsdkserv named pipe for PGPsdkServ.exe, which allows remote authenticated users to gain privileges by sending a data object representing an absolute pointer, which causes code execution at the corresponding address.
PHP Desktop anterior a 9.5.1 no valida los objetos de datos recibidos por la (1) tubería con nombre \pipe\pgpserv para PGPServ.exe o (2) la tubería con nombre \pipe\pgpsdkserv para PGPsdkServ.exe, lo cual permite a usuarios autenticados remotamente obtener privilegios enviando un objeto de datos representando un puntero absoluto, lo cual provoca la ejecución del código en la dirección correspondiente.
CVSS Scores
SSVC
- Decision:-
Timeline
- 2007-01-30 CVE Reserved
- 2007-01-30 CVE Published
- 2023-10-27 EPSS Updated
- 2024-08-07 CVE Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
- ---------- First Exploit
CWE
CAPEC
References (11)
URL | Tag | Source |
---|---|---|
http://archives.neohapsis.com/archives/vulnwatch/2007-q1/0025.html | Mailing List | |
http://osvdb.org/32969 | Vdb Entry | |
http://osvdb.org/32970 | Vdb Entry | |
http://securityreason.com/securityalert/2203 | Third Party Advisory | |
http://securitytracker.com/id?1017563 | Vdb Entry | |
http://www.kb.cert.org/vuls/id/102465 | Third Party Advisory | |
http://www.securityfocus.com/archive/1/458137/100/0/threaded | Mailing List | |
http://www.securityfocus.com/bid/22247 | Vdb Entry | |
http://www.vupen.com/english/advisories/2007/0356 | Vdb Entry |
URL | Date | SRC |
---|
URL | Date | SRC |
---|
URL | Date | SRC |
---|---|---|
http://secunia.com/advisories/23938 | 2018-10-16 | |
http://www.ngssoftware.com/advisories/medium-risk-vulnerability-in-pgp-desktop | 2018-10-16 |
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Pgp Search vendor "Pgp" | Corporate Desktop Search vendor "Pgp" for product "Corporate Desktop" | 9.5 Search vendor "Pgp" for product "Corporate Desktop" and version "9.5" | - |
Affected
|