Vulnerability Description
Multiple stack-based buffer overflows in the FileManager ActiveX control in SAFmgPws.dll in SoftArtisans XFile before 2.4.0 allow remote attackers to execute arbitrary code via unspecified calls to the (1) BuildPath, (2) GetDriveName, (3) DriveExists, or (4) DeleteFile method.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Softartisans | Xfile | <= 2.3.4 |
Related Weaknesses (CWE)
References
- http://secunia.com/advisories/31615Vendor Advisory
- http://support.softartisans.com/Support-114.aspx
- http://www.kb.cert.org/vuls/id/914785US Government Resource
- http://www.securityfocus.com/bid/30826
- http://secunia.com/advisories/31615Vendor Advisory
- http://support.softartisans.com/Support-114.aspx
- http://www.kb.cert.org/vuls/id/914785US Government Resource
- http://www.securityfocus.com/bid/30826
FAQ
What is CVE-2007-1682?
CVE-2007-1682 is a vulnerability with a CVSS score of 9.3 (HIGH). Multiple stack-based buffer overflows in the FileManager ActiveX control in SAFmgPws.dll in SoftArtisans XFile before 2.4.0 allow remote attackers to execute arbitrary code via unspecified calls to th...
How severe is CVE-2007-1682?
CVE-2007-1682 has been rated HIGH with a CVSS base score of 9.3/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2007-1682?
Check the references section above for vendor advisories and patch information. Affected products include: Softartisans Xfile.