← back
CVE-2007-5265

CVE-2007-5265

23Vexday Risk Score

No sign of exploitation. It has a public proof of concept.

ssvc Attendepss 5.3%
from disclosure to weapon0 days
Published on NVDOct 8
1st PoCOct 5
exploitation probability
5.3%top 8% of all CVEs
observed exploitation
nono source reports it
1 public exploit(s)
Multiple format string vulnerabilities in websrv.cpp in Dawn of Time 1.69s beta4 and earlier allow remote attackers to execute arbitrary code via format string specifiers in the (1) username or (2) password fields when accessing certain "restricted zones", which are not properly handled by the (a) processWebHeader and (b) filterWebRequest functions.
Affected products
n/a · n/a
⚠ Public resources, to assess the exposure of systems you control or are authorized to test. Test only with authorization.