← back
CVE-2007-2864

CVE-2007-2864

50Vexday Risk Score

Patch soon. It has a working public exploit.

ssvc Attendepss 50%
from disclosure to weapon1254 days
Published on NVDJun 6
1st PoC+1254d
metasploitJun 5
exploitation probability
50%top 1% of all CVEs
observed exploitation
nono source reports it
1 public exploit(s)
Stack-based buffer overflow in the Anti-Virus engine before content update 30.6 in multiple CA (formerly Computer Associates) products allows remote attackers to execute arbitrary code via a large invalid value of the coffFiles field in a .CAB file.
Affected products
n/a · n/a
⚠ Public resources, to assess the exposure of systems you control or are authorized to test. Test only with authorization.