VDB
CVE-2007-1083
CVE-2007-1083
PUBLISHED
CVSS 9.300000190734863 CRITICAL
Buffer overflow in the Configuration Checker (ConfigChk) ActiveX control in VSCnfChk.dll 2.0.0.2 for Verisign Managed PKI Service, Secure Messaging for Microsoft Exchange, and Go Secure! allows remote attackers to execute arbitrary code via long arguments to the VerCompare method.
EPSS 29.00% · 96.7th percentile
Risk Scores
CVSS 2.0
9.300000190734863
EPSS Score
29.00%
96.7th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| verisign | mpki | 0, 5.0, 6.0 |
| n/a | n/a | * |
Timeline
- Feb 23, 2007 CVE Published
- Feb 4, 2022 EPSS Score
- Mar 29, 2022 EPSS Score
- Jul 12, 2022 EPSS Score
- Sep 4, 2022 EPSS Score
- Oct 26, 2022 EPSS Score
- Feb 9, 2023 EPSS Score
- Mar 7, 2023 EPSS Score
- Apr 3, 2023 EPSS Score
- May 25, 2023 EPSS Score
- Jul 27, 2023 EPSS Score
- Sep 8, 2023 EPSS Score
References
- http://www.securitytracker.com/id?1017693 url
- http://www.securitytracker.com/id?1017694 url
- 33479 vdb
- 24249 third-party-advisory
- verisign-configchk-bo(32639) vdb
- VU#308087 third-party-advisory
- http://jvn.jp/cert/JVNVU%23308087/index.html url
- https://download.verisign.co.jp/support/announce/20070216.html url
- 20070223 Verisign ConfigChk ActiveX Overflow(s) mailing-list
- 22676 vdb
- 22671 vdb
- 20070222 Verisign ConfigChk ActiveX Overflow(s) mailing-list
- http://www.jpcert.or.jp/at/2007/at070006.txt url
- 1017692 vdb
- ADV-2007-0702 vdb
- 20070222 VeriSign ConfigChk ActiveX Control Buffer Overflow Vulnerability third-party-advisory
- https://nvd.nist.gov/vuln/detail/CVE-2007-1083 advisory