Buffer overflow in LICRCMD.EXE in CA ERwin Process Modeler (formerly AllFusion Process Modeler) 7.1 allows attackers to execute arbitrary code via a long filename. NOTE: the researcher does not suggest any circumstances in which the filename would come from an untrusted source, and therefore perhaps the issue does not cross privilege boundaries and should not be included in CVE.
References
Link | Resource |
---|---|
http://osvdb.org/39597 | |
http://www.eleytt.com/advisories/eleytt_ALLFUSIONLICRCMD.pdf | Vendor Advisory |
http://www.securityfocus.com/bid/24817 |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: mitre
Published: 2007-07-11T22:00:00
Updated: 2008-11-15T10:00:00
Reserved: 2007-07-11T00:00:00
Link: CVE-2007-3695
JSON object: View
NVD Information
Status : Modified
Published: 2007-07-11T22:30:00.000
Modified: 2021-04-09T13:53:07.580
Link: CVE-2007-3695
JSON object: View
Redhat Information
No data.
CWE