VDB
CVE-2007-2931
CVE-2007-2931
PUBLISHED
CVSS 9.300000190734863 CRITICAL
Heap-based buffer overflow in Microsoft MSN Messenger 6.2, 7.0, and 7.5, and Live Messenger 8.0 allows user-assisted remote attackers to execute arbitrary code via unspecified vectors involving video conversation handling in Web Cam and video chat sessions.
EPSS 61.72% · 98.4th percentile
Risk Scores
CVSS 2.0
9.300000190734863
EPSS Score
61.72%
98.4th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| microsoft | windows_live_messenger | 8.0 |
| n/a | n/a | n/a |
| microsoft | msn_messenger | 6.2, 7.5, 7.0 |
Timeline
- Aug 31, 2007 CVE Published
- Feb 4, 2022 EPSS Score
- Mar 29, 2022 EPSS Score
- May 1, 2022 CVE Updated
- Jul 12, 2022 EPSS Score
- Sep 4, 2022 EPSS Score
- Dec 18, 2022 EPSS Score
- Feb 9, 2023 EPSS Score
- Apr 3, 2023 EPSS Score
- May 25, 2023 EPSS Score
- Sep 8, 2023 EPSS Score
- Oct 13, 2023 EPSS Score
References
- 26570 third-party-advisory
- msnmessenger-video-bo(36314) vdb
- 25461 vdb
- ADV-2007-2987 vdb
- 1018622 vdb
- oval:org.mitre.oval:def:2063 vdb
- http://www.team509.com/modules.php?name=News&file=article&sid=50 url
- 40126 vdb
- MS07-054 vendor-advisory
- TA07-254A third-party-advisory
- VU#166521 third-party-advisory
- https://nvd.nist.gov/vuln/detail/CVE-2007-2931 advisory