CVE-2007-5257

Edraw Office Viewer Component < 5.3.220.1 - Memory Corruption

Title source: rule

Description

Stack-based buffer overflow in the EDraw.OfficeViewer ActiveX control in officeviewer.ocx in EDraw Office Viewer Component 5.3.220.1 and earlier allows remote attackers to execute arbitrary code via long strings in the first and second arguments to the FtpDownloadFile method, a different vector than CVE-2007-4821 and CVE-2007-3169.

Exploits (1)

exploitdb WORKING POC VERIFIED
by shinnai · htmldoswindows
https://www.exploit-db.com/exploits/4474

Scores

EPSS 0.1598
EPSS Percentile 94.8%

Details

CWE
CWE-119
Status published
Products (1)
edraw/office_viewer_component < 5.3.220.1
Published Oct 06, 2007
Tracked Since Feb 18, 2026