VDB
CVE-2007-2919
CVE-2007-2919
PUBLISHED
CVSS 9.300000190734863 CRITICAL
Multiple stack-based buffer overflows in the FViewerLoading ActiveX control (FlipViewerX.dll) in E-Book Systems FlipViewer before 4.1 allow remote attackers to cause a denial of service (crash) or execute arbitrary code via long (1) UID, (2) Opf, (3) PAGENO, (4) LaunchMode, (5) SubID, (6) BookID, (7) LibraryID, (8) SubURL, and (9) LoadOpf properties.
EPSS 76.54% · 99.0th percentile
Risk Scores
CVSS 2.0
9.300000190734863
EPSS Score
76.54%
99.0th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| e-book_systems | flipviewer | 0 |
| n/a | n/a | n/a |
Timeline
- Jun 6, 2007 CVE Published
- Jun 15, 2010 PoC Published
- May 29, 2018 PoC Published
- Feb 4, 2022 EPSS Score
- May 20, 2022 EPSS Score
- Jul 12, 2022 EPSS Score
- Oct 26, 2022 EPSS Score
- Feb 9, 2023 EPSS Score
- Mar 7, 2023 EPSS Score
- May 25, 2023 EPSS Score
- Sep 8, 2023 EPSS Score
- Oct 30, 2023 EPSS Score
References
- 25568 third-party-advisory
- 24328 vdb
- ADV-2007-2081 vdb
- flipviewer-fviewerloading-bo(34742) vdb
- 37042 vdb
- VU#449089 third-party-advisory
- https://nvd.nist.gov/vuln/detail/CVE-2007-2919 advisory