CVE-2007-3696
CA ERwin Data Model Validator - Denial of Service via Malformed .EXP Database File
Title source: llmDescription
CA ERwin Data Model Validator (formerly AllFusion Data Model Validator) allows remote attackers to (1) cause a denial of service (application hang) via a malformed .EXP database file and (2) cause a denial of service (aaplication crash) via a crafted .EXP database file, which triggers a NULL dereference.
References (3)
Core 3
Core References
Third Party Advisory, VDB Entry vdb-entry
x_refsource_osvdb
http://osvdb.org/39596
Vendor Advisory x_refsource_misc
http://www.eleytt.com/advisories/eleytt_ALLFUSIONDATAMODEL.pdf
Third Party Advisory, VDB Entry vdb-entry
x_refsource_bid
http://www.securityfocus.com/bid/24814
Scores
EPSS
0.0095
EPSS Percentile
76.7%
Details
Status
published
Products (1)
broadcom/erwin_data_model_validator
Published
Jul 11, 2007
Tracked Since
Feb 18, 2026