Vulnerabilities > CVE-2007-4750 - Cryptographic Issues vulnerability in Data-Vision Remotedocs R-Viewer
Attack vector
UNKNOWN Attack complexity
UNKNOWN Privileges required
UNKNOWN Confidentiality impact
UNKNOWN Integrity impact
UNKNOWN Availability impact
UNKNOWN Summary
Unspecified vulnerability in RemoteDocs R-Viewer before 1.6.3768 allows user-assisted remote attackers to execute arbitrary code via a crafted RDZ archive in which the first file has an executable extension.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 1 |
Common Weakness Enumeration (CWE)
Common Attack Pattern Enumeration and Classification (CAPEC)
- Signature Spoofing by Key Recreation An attacker obtains an authoritative or reputable signer's private signature key by exploiting a cryptographic weakness in the signature algorithm or pseudorandom number generation and then uses this key to forge signatures from the original signer to mislead a victim into performing actions that benefit the attacker.
Nessus
NASL family | Windows |
NASL id | RVIEWER_1_6_3768.NASL |
description | R-Viewer, a secure document viewer from remotedocs.com, is installed on the remote host. According to the registry, the installation of R-Viewer on the remote Windows host allows arbitrary code to be executed without a user |
last seen | 2020-06-01 |
modified | 2020-06-02 |
plugin id | 26062 |
published | 2007-09-18 |
reporter | This script is Copyright (C) 2007-2018 Tenable Network Security, Inc. |
source | https://www.tenable.com/plugins/nessus/26062 |
title | R-Viewer < 1.6.3768 Multiple Vulnerabilities |
code |
|
References
- http://osvdb.org/40544
- http://osvdb.org/40544
- http://secunia.com/advisories/26835
- http://secunia.com/advisories/26835
- http://securityreason.com/securityalert/3150
- http://securityreason.com/securityalert/3150
- http://securitytracker.com/id?1018703
- http://securitytracker.com/id?1018703
- http://www.securityfocus.com/archive/1/479718/100/0/threaded
- http://www.securityfocus.com/archive/1/479718/100/0/threaded
- http://www.securityfocus.com/bid/25591
- http://www.securityfocus.com/bid/25591
- http://www.symantec.com/content/en/us/enterprise/research/SYMSA-2007-009.txt
- http://www.symantec.com/content/en/us/enterprise/research/SYMSA-2007-009.txt
- http://www.vupen.com/english/advisories/2007/3199
- http://www.vupen.com/english/advisories/2007/3199
- https://exchange.xforce.ibmcloud.com/vulnerabilities/36652
- https://exchange.xforce.ibmcloud.com/vulnerabilities/36652