Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2007-4034

Опубликовано: 27 июл. 2007
Источник: nvd
CVSS2: 9.3
EPSS Средний

Описание

Stack-based buffer overflow in the YDPCTL.YDPControl.1 (aka Yahoo! Installer Plugin for Widgets) ActiveX control before 2007.7.13.3 (20070620) in YDPCTL.dll in Yahoo! Widgets before 4.0.5 allows remote attackers to execute arbitrary code via a long argument to the GetComponentVersion method. NOTE: some of these details are obtained from third party information.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:yahoo:widgets:*:*:*:*:*:*:*:*
Версия до 4.0.5 (включая)

EPSS

Процентиль: 97%
0.30432
Средний

9.3 Critical

CVSS2

Дефекты

CWE-119

Связанные уязвимости

github
почти 4 года назад

Stack-based buffer overflow in the YDPCTL.YDPControl.1 (aka Yahoo! Installer Plugin for Widgets) ActiveX control before 2007.7.13.3 (20070620) in YDPCTL.dll in Yahoo! Widgets before 4.0.5 allows remote attackers to execute arbitrary code via a long argument to the GetComponentVersion method. NOTE: some of these details are obtained from third party information.

EPSS

Процентиль: 97%
0.30432
Средний

9.3 Critical

CVSS2

Дефекты

CWE-119