Vulnerability Details CVE-2007-0325
Multiple buffer overflows in the Trend Micro OfficeScan Web-Deployment SetupINICtrl ActiveX control in OfficeScanSetupINI.dll, as used in OfficeScan 7.0 before Build 1344, OfficeScan 7.3 before Build 1241, and Client / Server / Messaging Security 3.0 before Build 1197, allow remote attackers to execute arbitrary code via a crafted HTML document.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.736
EPSS Ranking 98.7%
CVSS Severity
CVSS v2 Score 9.3
Products affected by CVE-2007-0325
-
cpe:2.3:a:trend_micro:client-server-messaging_security:3.0
-
cpe:2.3:a:trend_micro:officescan_corporate_edition:7.0
-
cpe:2.3:a:trend_micro:officescan_corporate_edition:7.3