CVE-2007-2193

ACD Systems Acdsee - Buffer Overflow

Title source: rule

Description

Stack-based buffer overflow in the ID_X.apl plugin in ACDSee 9.0 Build 108, Pro 8.1 Build 99, and Photo Editor 4.0 Build 195 allows user-assisted remote attackers to execute arbitrary code via a crafted XPM file with a long section string. NOTE: some of these details are obtained from third party information.

Exploits (3)

exploitdb WORKING POC VERIFIED
by Metasploit · rubylocalwindows
https://www.exploit-db.com/exploits/16632
exploitdb WORKING POC VERIFIED
by Marsu · clocalwindows
https://www.exploit-db.com/exploits/3776
metasploit WORKING POC GOOD
rubypocwin
https://github.com/rapid7/metasploit-framework/blob/master/modules/exploits/windows/fileformat/acdsee_xpm.rb

Scores

EPSS 0.7802
EPSS Percentile 99.0%

Details

Status published
Products (3)
acd_systems/acdsee 8.1_build_99
acd_systems/acdsee 9.0_build_108
acd_systems/photo_editor 4.0_build_195
Published Apr 24, 2007
Tracked Since Feb 18, 2026