Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2007-6506

Опубликовано: 20 дек. 2007
Источник: nvd
CVSS2: 9.3
EPSS Средний

Описание

The HPRulesEngine.ContentCollection.1 ActiveX Control in RulesEngine.dll for HP Software Update 4.000.005.007 and earlier, including 3.0.8.4, allows remote attackers to (1) overwrite and corrupt arbitrary files via arguments to the SaveToFile method, and possibly (2) access arbitrary files via the LoadDataFromFile method.

Уязвимые конфигурации

Конфигурация 1

Одно из

cpe:2.3:a:hp:software_update:*:*:*:*:*:*:*:*
Версия до 4.000.005.007 (включая)
cpe:2.3:a:hp:software_update:3.0.8.4:*:*:*:*:*:*:*

EPSS

Процентиль: 95%
0.18458
Средний

9.3 Critical

CVSS2

Дефекты

NVD-CWE-Other

Связанные уязвимости

github
больше 3 лет назад

The HPRulesEngine.ContentCollection.1 ActiveX Control in RulesEngine.dll for HP Software Update 4.000.005.007 and earlier, including 3.0.8.4, allows remote attackers to (1) overwrite and corrupt arbitrary files via arguments to the SaveToFile method, and possibly (2) access arbitrary files via the LoadDataFromFile method.

EPSS

Процентиль: 95%
0.18458
Средний

9.3 Critical

CVSS2

Дефекты

NVD-CWE-Other