Lucene search

K
cve[email protected]CVE-2007-0444
HistoryJan 24, 2007 - 10:28 p.m.

CVE-2007-0444

2007-01-2422:28:00
CWE-119
web.nvd.nist.gov
21
citrix
presentation server
stack-based buffer overflow
cve-2007-0444
nvd
enumprintersw
openprinter functions

7.2 High

CVSS2

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:L/AC:L/Au:N/C:C/I:C/A:C

7.7 High

AI Score

Confidence

High

0.01 Low

EPSS

Percentile

83.7%

Stack-based buffer overflow in the print provider library (cpprov.dll) in Citrix Presentation Server 4.0, MetaFrame Presentation Server 3.0, and MetaFrame XP 1.0 allows local users and remote attackers to execute arbitrary code via long arguments to the (1) EnumPrintersW and (2) OpenPrinter functions.

Affected configurations

NVD
Node
citrixmetaframeMatch1.0xp
OR
citrixmetaframe_presentation_serverMatch3.0
OR
citrixmetaframe_presentation_serverMatch4.0

7.2 High

CVSS2

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:L/AC:L/Au:N/C:C/I:C/A:C

7.7 High

AI Score

Confidence

High

0.01 Low

EPSS

Percentile

83.7%