VDB
CVE-2007-1682
CVE-2007-1682
PUBLISHED
CVSS 9.300000190734863 CRITICAL
Multiple stack-based buffer overflows in the FileManager ActiveX control in SAFmgPws.dll in SoftArtisans XFile before 2.4.0 allow remote attackers to execute arbitrary code via unspecified calls to the (1) BuildPath, (2) GetDriveName, (3) DriveExists, or (4) DeleteFile method.
EPSS 65.76% · 98.5th percentile
Risk Scores
CVSS 2.0
9.300000190734863
EPSS Score
65.76%
98.5th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| softartisans | xfile | 1.0, 1.0.7, 1.1 |
| n/a | n/a | n/a |
Timeline
- Aug 27, 2008 CVE Published
- May 9, 2010 PoC Published
- May 29, 2018 PoC Published
- Feb 4, 2022 EPSS Score
- Mar 29, 2022 EPSS Score
- Jul 12, 2022 EPSS Score
- Sep 4, 2022 EPSS Score
- Dec 18, 2022 EPSS Score
- Feb 9, 2023 EPSS Score
- Apr 3, 2023 EPSS Score
- May 18, 2023 EPSS Score
- Jul 17, 2023 EPSS Score
References
- VU#914785 third-party-advisory
- 31615 third-party-advisory
- 30826 vdb
- http://support.softartisans.com/Support-114.aspx url
- https://nvd.nist.gov/vuln/detail/CVE-2007-1682 advisory