Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2006-4513

Опубликовано: 28 окт. 2006
Источник: nvd
CVSS2: 5.1
EPSS Низкий

Описание

Multiple integer overflows in the WV library in wvWare (formerly mswordview) before 1.2.3, as used by AbiWord, KWord, and possibly other products, allow user-assisted remote attackers to execute arbitrary code via a crafted Microsoft Word (DOC) file that produces (1) large LFO clfolvl values in the wvGetLFO_records function or (2) a large LFO nolfo value in the wvGetFLO_PLF function.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:wvware:wvware:*:*:*:*:*:*:*:*
Версия до 1.2.2 (включая)

EPSS

Процентиль: 92%
0.08368
Низкий

5.1 Medium

CVSS2

Дефекты

NVD-CWE-Other

Связанные уязвимости

ubuntu
почти 19 лет назад

Multiple integer overflows in the WV library in wvWare (formerly mswordview) before 1.2.3, as used by AbiWord, KWord, and possibly other products, allow user-assisted remote attackers to execute arbitrary code via a crafted Microsoft Word (DOC) file that produces (1) large LFO clfolvl values in the wvGetLFO_records function or (2) a large LFO nolfo value in the wvGetFLO_PLF function.

debian
почти 19 лет назад

Multiple integer overflows in the WV library in wvWare (formerly mswor ...

github
больше 3 лет назад

Multiple integer overflows in the WV library in wvWare (formerly mswordview) before 1.2.3, as used by AbiWord, KWord, and possibly other products, allow user-assisted remote attackers to execute arbitrary code via a crafted Microsoft Word (DOC) file that produces (1) large LFO clfolvl values in the wvGetLFO_records function or (2) a large LFO nolfo value in the wvGetFLO_PLF function.

EPSS

Процентиль: 92%
0.08368
Низкий

5.1 Medium

CVSS2

Дефекты

NVD-CWE-Other