Vulnerabilities > CVE-2007-3168 - Unspecified vulnerability in Edraw Office Viewer Component 4.0.5.20
Attack vector
UNKNOWN Attack complexity
UNKNOWN Privileges required
UNKNOWN Confidentiality impact
UNKNOWN Integrity impact
UNKNOWN Availability impact
UNKNOWN Summary
A certain ActiveX control in the EDraw Office Viewer Component (edrawofficeviewer.ocx) 4.0.5.20, and other versions before 5.0, allows remote attackers to delete arbitrary files via the DeleteLocalFile method.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 2 |
Exploit-Db
description | EDraw Office Viewer Component Unsafe Method Exploit. CVE-2007-3168. Remote exploit for windows platform |
file | exploits/windows/remote/4010.html |
id | EDB-ID:4010 |
last seen | 2016-01-31 |
modified | 2007-05-30 |
platform | windows |
port | |
published | 2007-05-30 |
reporter | shinnai |
source | https://www.exploit-db.com/download/4010/ |
title | EDraw Office Viewer Component Unsafe Method Exploit |
type | remote |
Nessus
NASL family | Windows |
NASL id | OFFICEVIEWER_ACTIVEX_5.NASL |
description | The remote host contains the Office Viewer Component, an ActiveX control for working with Microsoft Office documents. The version of this control installed on the remote host contains a buffer overflow in its |
last seen | 2020-06-01 |
modified | 2020-06-02 |
plugin id | 26012 |
published | 2007-09-10 |
reporter | This script is Copyright (C) 2007-2018 and is owned by Tenable, Inc. or an Affiliate thereof. |
source | https://www.tenable.com/plugins/nessus/26012 |
title | Office Viewer Component < 5.0 Multiple Vulnerabilities |
code |
|
References
- http://moaxb.blogspot.com/2007/05/moaxb-28-edraw-office-viewer-component.html
- http://moaxb.blogspot.com/2007/05/moaxb-28-edraw-office-viewer-component.html
- http://osvdb.org/36044
- http://osvdb.org/36044
- http://secunia.com/advisories/25418
- http://secunia.com/advisories/25418
- http://shinnai.altervista.org/viewtopic.php?id=42&t_id=31
- http://shinnai.altervista.org/viewtopic.php?id=42&t_id=31
- http://www.ocxt.com/archives/28
- http://www.ocxt.com/archives/28
- http://www.securityfocus.com/bid/24230
- http://www.securityfocus.com/bid/24230
- http://www.vupen.com/english/advisories/2007/1992
- http://www.vupen.com/english/advisories/2007/1992
- https://exchange.xforce.ibmcloud.com/vulnerabilities/34588
- https://exchange.xforce.ibmcloud.com/vulnerabilities/34588
- https://www.exploit-db.com/exploits/4010
- https://www.exploit-db.com/exploits/4010