Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CVE-2007-2323

EPSS 5.99% · P91
Get alerts for future matching vulnerabilitiesLog in to subscribe

I. Basic Information for CVE-2007-2323

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Description
Multiple buffer overflows in the WinDVDX ActiveX control in InterVideo Home Theater 2.1.13.0 and 2.5.13.58 allow remote attackers to execute arbitrary code via a long string argument to the (1) GetDiscType or (2) AddFileList method. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.
Source: NVD (National Vulnerability Database)
CVSS Information
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Type
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Title
InterVideo HomeTheater多个ActiveX控件缓冲区溢出漏洞
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
InterVideo HomeTheater是多媒体电脑完整解决方案,提供观看DVD影片光碟、收看或录制电视等功能。 InterVideo HomeTheater的多个ActiveX控件在处理超长畸形参数时存在漏洞,远程攻击者可能利用此漏洞控制用户机器。 InterVideo HomeTheater的WinDVDX ActiveX控件在处理GetDiscType()方法时存在栈溢出漏洞。如果向该方法传递了超过250字节的超长字符串的话就可能触发这个溢出,导致执行任意指令。此外,WinDVDX Active
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)

Affected Products

VendorProductAffected VersionsCPESubscribe
-n/a n/a -

II. Public POCs for CVE-2007-2323

#POC DescriptionSource LinkShenlong Link
AI-Generated POCPremium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2007-2323

登录查看更多情报信息。

Same Patch Batch · n/a · 2007-04-27 · 28 CVEs total

CVE-2007-2339Phorum pm.php文件输入验证漏洞
CVE-2007-2331Shop-Script 'cart.php'PHP远程文件包含漏洞
CVE-2007-2330DynaTracker 'includes_handler.php'远程文件包含漏洞
CVE-2007-2329Searchactivity 'searchbot.php'在PHP远程文件包含漏洞
CVE-2007-2328phpMYTGP 'addvip.php'PHP远程文件包含漏洞
CVE-2007-2327HTMLEditBox Config.PHP 远程文件包含漏洞
CVE-2007-2326HYIP Manager Pro 多个plugin_file参数PHP远程文件包含漏洞
CVE-2007-2325MyNewsGroups Include.PHP 远程文件包含漏洞
CVE-2007-2324JulmaCMS File.PHP 目录遍历漏洞
CVE-2007-2322Nero MediaHome NMMediaServer.EXE 拒绝服务漏洞
CVE-2007-2321SilverStripe 搜索功能未明漏洞
CVE-2007-2342Creascripts CreaDirectory Error.ASP SQL注入漏洞
CVE-2007-2341PHPBandManager 'suite/index.php' 远程文件包含漏洞
CVE-2007-2340PHPOracleView 'inc/include_all.inc.php' 多个PHP远程文件包含漏洞
CVE-2007-2348lftp 安全漏洞
CVE-2007-2338Phorum banlist.php输入验证漏洞
CVE-2007-2337Exponent CMS 多个跨站脚本攻击漏洞
CVE-2007-2336InterVations NaviCOPA Web Server HTTP请求未明拒绝服务攻击漏洞
CVE-2007-2335Lunascape 'RSS Feed reader'功能跨站脚本攻击漏洞
CVE-2007-2334Nortel VPN路由器权限许可和访问控制漏洞

Showing top 20 of 28 CVEs. View all on vendor page → →

IV. Related Vulnerabilities

V. Comments for CVE-2007-2323

No comments yet


Leave a comment