2024-08-07 14:03:13 +00:00

98 lines
2.9 KiB
JSON

{
"id": "CVE-2007-0084",
"sourceIdentifier": "cve@mitre.org",
"published": "2007-01-05T11:28:00.000",
"lastModified": "2024-08-07T12:15:17.950",
"vulnStatus": "Modified",
"cveTags": [
{
"sourceIdentifier": "cve@mitre.org",
"tags": [
"disputed"
]
}
],
"descriptions": [
{
"lang": "en",
"value": "Buffer overflow in the Windows NT Message Compiler (MC) 1.00.5239 on Microsoft Windows XP allows local users to gain privileges via a long MC-filename. NOTE: this issue has been disputed by a reliable third party who states that the compiler is not a privileged program, so privilege boundaries cannot be crossed"
},
{
"lang": "es",
"value": "** IMPUGNADO ** Desbordamiento de b\u00fafer en Windows NT Message Compiler (MC) 1.00.5239 sobre Microsoft Windows XP permiten a un usuario local obtener privilegios a trav\u00e9s de un MC-nombre de fichero. NOTA: Este asunto ha sido impugnado por una tercerta parte creible que indica que el compilador no es un programa privilegiado, por lo que los limites de privilegio no pueden estar cruzados."
}
],
"metrics": {
"cvssMetricV2": [
{
"source": "nvd@nist.gov",
"type": "Primary",
"cvssData": {
"version": "2.0",
"vectorString": "AV:L/AC:M/Au:S/C:C/I:C/A:C",
"accessVector": "LOCAL",
"accessComplexity": "MEDIUM",
"authentication": "SINGLE",
"confidentialityImpact": "COMPLETE",
"integrityImpact": "COMPLETE",
"availabilityImpact": "COMPLETE",
"baseScore": 6.6
},
"baseSeverity": "MEDIUM",
"exploitabilityScore": 2.7,
"impactScore": 10.0,
"acInsufInfo": false,
"obtainAllPrivilege": true,
"obtainUserPrivilege": false,
"obtainOtherPrivilege": false,
"userInteractionRequired": false
}
]
},
"weaknesses": [
{
"source": "nvd@nist.gov",
"type": "Primary",
"description": [
{
"lang": "en",
"value": "NVD-CWE-Other"
}
]
}
],
"configurations": [
{
"nodes": [
{
"operator": "OR",
"negate": false,
"cpeMatch": [
{
"vulnerable": true,
"criteria": "cpe:2.3:a:microsoft:message_compiler:1.00.5239:*:*:*:*:*:*:*",
"matchCriteriaId": "0D6D878F-1C39-48C5-9FBD-78B59D3CF1F3"
}
]
}
]
}
],
"references": [
{
"url": "http://osvdb.org/37817",
"source": "cve@mitre.org"
},
{
"url": "http://www.securityfocus.com/archive/1/455729/100/0/threaded",
"source": "cve@mitre.org"
},
{
"url": "http://www.securityfocus.com/archive/1/455789/100/0/threaded",
"source": "cve@mitre.org",
"tags": [
"Vendor Advisory"
]
}
]
}