9.3
CVSSv2

CVE-2007-5909

Published: 10/11/2007 Updated: 15/10/2018
CVSS v2 Base Score: 9.3 | Impact Score: 10 | Exploitability Score: 8.6
VMScore: 828
Vector: AV:N/AC:M/Au:N/C:C/I:C/A:C

Vulnerability Summary

Multiple stack-based buffer overflows in Autonomy (formerly Verity) KeyView Viewer, Filter, and Export SDK prior to 9.2.0.12, as used by ActivePDF DocConverter, IBM Lotus Notes prior to 7.0.3, Symantec Mail Security, and other products, allow remote malicious users to execute arbitrary code via a crafted (1) AG file to kpagrdr.dll, (2) AW file to awsr.dll, (3) DLL or (4) EXE file to exesr.dll, (5) DOC file to mwsr.dll, (6) MIF file to mifsr.dll, (7) SAM file to lasr.dll, or (8) RTF file to rtfsr.dll. NOTE: the WPD (wp6sr.dll) vector is covered by CVE-2007-5910.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

symantec mail security 5.0.1

symantec mail security 5.0

activepdf docconverter 3.8.2_.5

autonomy keyview filter sdk

autonomy keyview viewer sdk

symantec mail security 7.5

autonomy keyview export sdk

symantec mail security 5.0.0.24

symantec mail security 5.0.0

ibm lotus notes