Lucene search

K
cveCertccCVE-2007-6254
HistoryMar 20, 2008 - 12:44 a.m.

CVE-2007-6254

2008-03-2000:44:00
CWE-119
certcc
web.nvd.nist.gov
29
cve-2007-6254
sap
business objects
buffer overflow
rptviewerax
activex
nvd

CVSS2

9.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:M/Au:N/C:C/I:C/A:C

AI Score

8.2

Confidence

Low

EPSS

0.033

Percentile

91.3%

Stack-based buffer overflow in the SAP Business Objects BusinessObjects RptViewerAX ActiveX control in RptViewerAX.dll in Business Objects 6.5 before CHF74 allows remote attackers to execute arbitrary code via unspecified vectors.

Affected configurations

Nvd
Node
sapbusiness_objectsRange6.5
VendorProductVersionCPE
sapbusiness_objects*cpe:2.3:a:sap:business_objects:*:*:*:*:*:*:*:*

CVSS2

9.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:M/Au:N/C:C/I:C/A:C

AI Score

8.2

Confidence

Low

EPSS

0.033

Percentile

91.3%

Related for CVE-2007-6254