Show plain JSON{"id": "CVE-2007-1074", "cveTags": [], "metrics": {"cvssMetricV2": [{"type": "Primary", "source": "nvd@nist.gov", "cvssData": {"version": "2.0", "baseScore": 9.3, "accessVector": "NETWORK", "vectorString": "AV:N/AC:M/Au:N/C:C/I:C/A:C", "authentication": "NONE", "integrityImpact": "COMPLETE", "accessComplexity": "MEDIUM", "availabilityImpact": "COMPLETE", "confidentialityImpact": "COMPLETE"}, "acInsufInfo": false, "impactScore": 10.0, "baseSeverity": "HIGH", "obtainAllPrivilege": true, "exploitabilityScore": 8.6, "obtainUserPrivilege": false, "obtainOtherPrivilege": false, "userInteractionRequired": true}]}, "published": "2007-02-22T22:28:00.000", "references": [{"url": "http://osvdb.org/33377", "source": "cve@mitre.org"}, {"url": "http://osvdb.org/33378", "source": "cve@mitre.org"}, {"url": "http://secunia.com/advisories/24261", "tags": ["Vendor Advisory"], "source": "cve@mitre.org"}, {"url": "http://www.securityfocus.com/bid/22652", "tags": ["Exploit"], "source": "cve@mitre.org"}, {"url": "http://www.vupen.com/english/advisories/2007/0694", "source": "cve@mitre.org"}, {"url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/32598", "source": "cve@mitre.org"}, {"url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/32608", "source": "cve@mitre.org"}, {"url": "https://www.exploit-db.com/exploits/3349", "source": "cve@mitre.org"}, {"url": "http://osvdb.org/33377", "source": "af854a3a-2127-422b-91ae-364da2661108"}, {"url": "http://osvdb.org/33378", "source": "af854a3a-2127-422b-91ae-364da2661108"}, {"url": "http://secunia.com/advisories/24261", "tags": ["Vendor Advisory"], "source": "af854a3a-2127-422b-91ae-364da2661108"}, {"url": "http://www.securityfocus.com/bid/22652", "tags": ["Exploit"], "source": "af854a3a-2127-422b-91ae-364da2661108"}, {"url": "http://www.vupen.com/english/advisories/2007/0694", "source": "af854a3a-2127-422b-91ae-364da2661108"}, {"url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/32598", "source": "af854a3a-2127-422b-91ae-364da2661108"}, {"url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/32608", "source": "af854a3a-2127-422b-91ae-364da2661108"}, {"url": "https://www.exploit-db.com/exploits/3349", "source": "af854a3a-2127-422b-91ae-364da2661108"}], "vulnStatus": "Deferred", "weaknesses": [{"type": "Primary", "source": "nvd@nist.gov", "description": [{"lang": "en", "value": "NVD-CWE-Other"}]}], "descriptions": [{"lang": "en", "value": "Multiple buffer overflows in NewsBin Pro 5.33 and NewsBin Pro 4.x allow user-assisted remote attackers to execute arbitrary code via a long (1) DataPath or (2) DownloadPath attributed in a (a) NBI file, or (3) a long group field in a (b) NZB file."}, {"lang": "es", "value": "M\u00faltiples desbordamiento de b\u00fafer en NewsBin Pro 5.33 y NewsBin Pro 4.x permite a atacantes remotos con la colaboraci\u00f3n del usuario ejecutar c\u00f3digo de su elecci\u00f3n mediante un atributo (1) DataPath \u00f3 (2) DownloadPath en un fichero (1) NBI, \u00f3 (3) un campo largo de grupo en un fichero (b) NZB."}], "lastModified": "2025-04-09T00:30:58.490", "configurations": [{"nodes": [{"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:a:dji:newsbin_pro:4.x:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "586D18A0-9DE1-4F5F-B1E9-072FCCDCF04A"}, {"criteria": "cpe:2.3:a:dji:newsbin_pro:5.33:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "ECD617FA-DF0B-48A9-AA97-C6E1F8CCE9E3"}], "operator": "OR"}]}], "evaluatorImpact": "Successful exploitation allows execution of arbitrary code, but requires that the user is tricked into e.g. loading a malicious NBI configuration file.", "sourceIdentifier": "cve@mitre.org"}