VDB

CVE-2007-0325

CVE-2007-0325 PUBLISHED CVSS 9.300000190734863 CRITICAL

Multiple buffer overflows in the Trend Micro OfficeScan Web-Deployment SetupINICtrl ActiveX control in OfficeScanSetupINI.dll, as used in OfficeScan 7.0 before Build 1344, OfficeScan 7.3 before Build 1241, and Client / Server / Messaging Security 3.0 before Build 1197, allow remote attackers to execute arbitrary code via a crafted HTML document.

EPSS 75.67% · 98.9th percentile

Risk Scores

CVSS 2.0
9.300000190734863
EPSS Score
75.67%
98.9th percentile

Affected Products

VendorProductVersions
trend_microofficescan_corporate_edition7.0, 7.3
trend_microclient-server-messaging_security3.0
n/an/a*

Timeline

  • Feb 20, 2007 CVE Published
  • May 9, 2010 PoC Published
  • May 29, 2018 PoC Published
  • Feb 4, 2022 EPSS Score
  • May 1, 2022 CVE Updated
  • May 20, 2022 EPSS Score
  • Jul 12, 2022 EPSS Score
  • Oct 26, 2022 EPSS Score
  • Dec 18, 2022 EPSS Score
  • Mar 7, 2023 EPSS Score
  • Apr 3, 2023 EPSS Score
  • Jul 17, 2023 EPSS Score
Open in Interactive Console →
$ Console Community · 100/wk Open console ›