Lucene search

K
cve[email protected]CVE-2007-4607
HistoryAug 31, 2007 - 12:17 a.m.

CVE-2007-4607

2007-08-3100:17:00
CWE-119
web.nvd.nist.gov
60
cve
buffer overflow
easymailsmtpobj
activex control
remote code execution
nvd

9.3 High

CVSS2

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:M/Au:N/C:C/I:C/A:C

7.7 High

AI Score

Confidence

Low

0.94 High

EPSS

Percentile

99.2%

Buffer overflow in the EasyMailSMTPObj ActiveX control in emsmtp.dll 6.0.1 in the Quiksoft EasyMail SMTP Object, as used in Postcast Server Pro 3.0.61 and other products, allows remote attackers to execute arbitrary code via a long argument to the SubmitToExpress method, a different vulnerability than CVE-2007-1029. NOTE: this may have been fixed in version 6.0.3.15.

Affected configurations

NVD
Node
gate_comm_softwarepostcast_server_proMatch3.0.61
OR
quicksofteasymail_objects

9.3 High

CVSS2

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:M/Au:N/C:C/I:C/A:C

7.7 High

AI Score

Confidence

Low

0.94 High

EPSS

Percentile

99.2%