CVE-2007-4964
WinImage <= 8.10 - Denial of Service via Invalid BPB_BytsPerSec Field
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2007-4964. PoCs published by j00ru//vx.
AI-analyzed exploit summary The provided text describes a denial-of-service and directory-traversal vulnerability in WinImage due to insufficient input sanitization. Attackers can exploit these issues to cause a DoS or write malicious files to arbitrary directories.
Description
WinImage 8.10 and earlier allows remote attackers to cause a denial of service (infinite loop) via an invalid BPB_BytsPerSec field in the header of a .IMG file.
Exploits (1)
The provided text describes a denial-of-service and directory-traversal vulnerability in WinImage due to insufficient input sanitization. Attackers can exploit these issues to cause a DoS or write malicious files to arbitrary directories.