// For flags

CVE-2007-2953

vim format string flaw

Severity Score

6.8
*CVSS v2

Exploit Likelihood

*EPSS

Affected Versions

*CPE

Public Exploits

0
*Multiple Sources

Exploited in Wild

-
*KEV

Decision

-
*SSVC
Descriptions

Format string vulnerability in the helptags_one function in src/ex_cmds.c in Vim 6.4 and earlier, and 7.x up to 7.1, allows user-assisted remote attackers to execute arbitrary code via format string specifiers in a help-tags tag in a help file, related to the helptags command.

Vulnerabilidad de cadena de formato en la función helptags_one de src/ex_cmds.c en Vim 6.4 y anteriores, y 7.x hasta 7.1, permite a atacantes remotos con la intervención del usuario ejecutar código de su elección mediante especificadores de cadena de formato en una etiqueta help-tags de un archivo de ayuda, relacionado con el comando helptags.

*Credits: N/A
CVSS Scores
Attack Vector
Network
Attack Complexity
Medium
Authentication
None
Confidentiality
Partial
Integrity
Partial
Availability
Partial
* Common Vulnerability Scoring System
SSVC
  • Decision:-
Exploitation
-
Automatable
-
Tech. Impact
-
* Organization's Worst-case Scenario
Timeline
  • 2007-05-31 CVE Reserved
  • 2007-07-31 CVE Published
  • 2024-07-11 EPSS Updated
  • 2024-08-07 CVE Updated
  • ---------- Exploited in Wild
  • ---------- KEV Due Date
  • ---------- First Exploit
CWE
CAPEC
References (34)
URL Date SRC
Affected Vendors, Products, and Versions
Vendor Product Version Other Status
Vendor Product Version Other Status <-- --> Vendor Product Version Other Status
Vim Development Group
Search vendor "Vim Development Group"
Vim
Search vendor "Vim Development Group" for product "Vim"
<= 6.4
Search vendor "Vim Development Group" for product "Vim" and version " <= 6.4"
-
Affected
Vim Development Group
Search vendor "Vim Development Group"
Vim
Search vendor "Vim Development Group" for product "Vim"
7.0
Search vendor "Vim Development Group" for product "Vim" and version "7.0"
-
Affected
Vim Development Group
Search vendor "Vim Development Group"
Vim
Search vendor "Vim Development Group" for product "Vim"
7.1
Search vendor "Vim Development Group" for product "Vim" and version "7.1"
-
Affected
Vim Development Group
Search vendor "Vim Development Group"
Vim
Search vendor "Vim Development Group" for product "Vim"
7.1.38
Search vendor "Vim Development Group" for product "Vim" and version "7.1.38"
-
Affected