CVE-2007-6387

Scores

EPSS

0.572medium57.2%
0%20%40%60%80%100%

Percentile: 57.2%

CVSS

9.3critical2.0
0246810

CVSS Score: 9.3/10

All CVSS Scores

CVSS 2.0
9.3

Vector: AV:N/AC:M/Au:N/C:C/I:C/A:C

Description

Multiple stack-based buffer overflows in the awApi4.AnswerWorks.1 ActiveX control in awApi4.dll 4.0.0.42, as used by Vantage Linguistics AnswerWorks, and Intuit Clearly Bookkeeping, ProSeries, QuickBooks, Quicken, QuickTax, and TurboTax, allow remote attackers to execute arbitrary code via long arguments to the (1) GetHistory, (2) GetSeedQuery, (3) SetSeedQuery, and possibly other methods. NOTE: some of these details are obtained from third party information.

Scaner-VS 7 — a modern vulnerability management solution

Uses this database for vulnerability detection. High-speed search, cross-platform, advanced configuration audit, and flexible filtering. Suitable for organizations of any size.
Learn more about Scaner-VS 7

Sources

nvd

CWEs

CWE-119

Exploits

Exploit ID: 4825

Source: exploitdb

URL: https://www.exploit-db.com/exploits/4825

Vulnerable Software (8)

Type: Configuration

Vendor: *

Product: activex

Operating System: * * *

Trait:
{  "cpe_match": [    {      "cpe23uri": "cpe:2.3:a:intuit:bookkeeping:*:*:*:*:*:*:*:*",      "vulnerable": true    },    {      "cpe23uri": "cpe:2.3:a:intuit:proseries:*:*:*:*:*:*:*:*",      "...

Source: nvd

Type: Configuration

Vendor: *

Product: answerworks

Operating System: * * *

Trait:
{  "cpe_match": [    {      "cpe23uri": "cpe:2.3:a:intuit:bookkeeping:*:*:*:*:*:*:*:*",      "vulnerable": true    },    {      "cpe23uri": "cpe:2.3:a:intuit:proseries:*:*:*:*:*:*:*:*",      "...

Source: nvd

Type: Configuration

Vendor: *

Product: bookkeeping

Operating System: * * *

Trait:
{  "cpe_match": [    {      "cpe23uri": "cpe:2.3:a:intuit:bookkeeping:*:*:*:*:*:*:*:*",      "vulnerable": true    },    {      "cpe23uri": "cpe:2.3:a:intuit:proseries:*:*:*:*:*:*:*:*",      "...

Source: nvd

Type: Configuration

Vendor: *

Product: proseries

Operating System: * * *

Trait:
{  "cpe_match": [    {      "cpe23uri": "cpe:2.3:a:intuit:bookkeeping:*:*:*:*:*:*:*:*",      "vulnerable": true    },    {      "cpe23uri": "cpe:2.3:a:intuit:proseries:*:*:*:*:*:*:*:*",      "...

Source: nvd

Type: Configuration

Vendor: *

Product: quickbooks

Operating System: * * *

Trait:
{  "cpe_match": [    {      "cpe23uri": "cpe:2.3:a:intuit:bookkeeping:*:*:*:*:*:*:*:*",      "vulnerable": true    },    {      "cpe23uri": "cpe:2.3:a:intuit:proseries:*:*:*:*:*:*:*:*",      "...

Source: nvd

Type: Configuration

Vendor: *

Product: quicken

Operating System: * * *

Trait:
{  "cpe_match": [    {      "cpe23uri": "cpe:2.3:a:intuit:bookkeeping:*:*:*:*:*:*:*:*",      "vulnerable": true    },    {      "cpe23uri": "cpe:2.3:a:intuit:proseries:*:*:*:*:*:*:*:*",      "...

Source: nvd

Type: Configuration

Vendor: *

Product: quicktax

Operating System: * * *

Trait:
{  "cpe_match": [    {      "cpe23uri": "cpe:2.3:a:intuit:bookkeeping:*:*:*:*:*:*:*:*",      "vulnerable": true    },    {      "cpe23uri": "cpe:2.3:a:intuit:proseries:*:*:*:*:*:*:*:*",      "...

Source: nvd

Type: Configuration

Vendor: *

Product: turbo_tax

Operating System: * * *

Trait:
{  "cpe_match": [    {      "cpe23uri": "cpe:2.3:a:intuit:bookkeeping:*:*:*:*:*:*:*:*",      "vulnerable": true    },    {      "cpe23uri": "cpe:2.3:a:intuit:proseries:*:*:*:*:*:*:*:*",      "...

Source: nvd

End of list