← back
CVE-2007-0348

CVE-2007-0348

50Vexday Risk Score

Patch soon. It has a working public exploit.

ssvc Attendepss 35%
from disclosure to weapon1145 days
Published on NVDMar 21
1st PoC+1145d
metasploitMar 20
exploitation probability
35%top 2% of all CVEs
observed exploitation
nono source reports it
1 public exploit(s)
Stack-based buffer overflow in the IASystemInfo.dll ActiveX control in (1) InterActual Player 2.60.12.0717, (2) Roxio CinePlayer 3.2, (3) WinDVD 7.0.27.172, and possibly other products, allows remote attackers to execute arbitrary code via a long ApplicationType property.
Affected products
n/a · n/a
⚠ Public resources, to assess the exposure of systems you control or are authorized to test. Test only with authorization.