CVE-2007-3493

A certain ActiveX control in NCTWavChunksEditor2.dll 2.6.1.148 in NCTAudioStudio (NCTAudioStudio2) 2.7, as used by Sienzo DMM and probably other products, allows remote attackers to create or overwrite arbitrary files via a full pathname in the argument to the CreateFile method, a different product than CVE-2007-3400.
Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:microsoft:windows_xp:*:sp2:*:*:*:*:*:*
OR cpe:2.3:a:microsoft:internet_explorer:7.0:*:*:*:*:*:*:*
cpe:2.3:a:nctsoft_products:nctaudiostudio:2.7:*:*:*:*:*:*:*
cpe:2.3:a:nctsoft_products:nctwavchunkseditor2.dll:2.6.1.148:*:*:*:*:*:*:*

History

23 Jul 2021, 15:05

Type Values Removed Values Added
CPE cpe:2.3:a:microsoft:ie:7.0:*:*:*:*:*:*:* cpe:2.3:a:microsoft:internet_explorer:7.0:*:*:*:*:*:*:*

Information

Published : 2007-06-29 18:30

Updated : 2024-02-04 17:13


NVD link : CVE-2007-3493

Mitre link : CVE-2007-3493

CVE.ORG link : CVE-2007-3493


JSON object : View

Products Affected

microsoft

  • internet_explorer
  • windows_xp

nctsoft_products

  • nctaudiostudio
  • nctwavchunkseditor2.dll