Vulnerabilities > CVE-2007-2193 - Buffer Overflow vulnerability in ACD Systems Acdsee and Photo Editor

047910
CVSS 9.3 - CRITICAL
Attack vector
NETWORK
Attack complexity
MEDIUM
Privileges required
NONE
Confidentiality impact
COMPLETE
Integrity impact
COMPLETE
Availability impact
COMPLETE
network
acd-systems
critical
exploit available
metasploit

Summary

Stack-based buffer overflow in the ID_X.apl plugin in ACDSee 9.0 Build 108, Pro 8.1 Build 99, and Photo Editor 4.0 Build 195 allows user-assisted remote attackers to execute arbitrary code via a crafted XPM file with a long section string. NOTE: some of these details are obtained from third party information.

Exploit-Db

  • descriptionACDSee XPM File Section Buffer Overflow. CVE-2007-2193. Local exploit for windows platform
    idEDB-ID:16632
    last seen2016-02-02
    modified2010-09-25
    published2010-09-25
    reportermetasploit
    sourcehttps://www.exploit-db.com/download/16632/
    titleACDSee XPM File Section Buffer Overflow
  • descriptionACDSee 9.0 (.XPM File) Local Buffer Overflow Exploit. CVE-2007-2193. Local exploit for windows platform
    fileexploits/windows/local/3776.c
    idEDB-ID:3776
    last seen2016-01-31
    modified2007-04-22
    platformwindows
    port
    published2007-04-22
    reporterMarsu
    sourcehttps://www.exploit-db.com/download/3776/
    titleACDSee 9.0 - .XPM Local Buffer Overflow Exploit
    typelocal

Metasploit

descriptionThis module exploits a buffer overflow in ACDSee 9.0. When viewing a malicious XPM file with the ACDSee product, a remote attacker could overflow a buffer and execute arbitrary code.
idMSF:EXPLOIT/WINDOWS/FILEFORMAT/ACDSEE_XPM
last seen2020-06-12
modified2020-01-15
published2008-12-07
referenceshttps://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-2193
reporterRapid7
sourcehttps://github.com/rapid7/metasploit-framework/blob/master//modules/exploits/windows/fileformat/acdsee_xpm.rb
titleACDSee XPM File Section Buffer Overflow

Packetstorm

data sourcehttps://packetstormsecurity.com/files/download/83117/acdsee_xpm.rb.txt
idPACKETSTORM:83117
last seen2016-12-05
published2009-11-26
reporterMC
sourcehttps://packetstormsecurity.com/files/83117/ACDSee-XPM-File-Section-Buffer-Overflow.html
titleACDSee XPM File Section Buffer Overflow

Saint

bid23620
descriptionACDSee XPM file handling buffer overflow
idmisc_acdseexpm
osvdb35236
titleacdsee_xpm
typeclient