CVE-2007-5606

HP Instant Support < 1.0.0.23 - Buffer Overflow in MoveFile Function

Title source: llm
STIX 2.1

Description

Buffer overflow in the MoveFile function in the HPISDataManagerLib.Datamgr ActiveX control in HPISDataManager.dll in HP Instant Support before 1.0.0.24 allows remote attackers to execute arbitrary code via a long argument, a different vulnerability than CVE-2007-5604, CVE-2007-5605, and CVE-2007-5607.

References (9)

Core 9
Core References
Patch, Vendor Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/30516
Various Sources vendor-advisory x_refsource_hp
http://www12.itrc.hp.com/service/cki/docDisplay.do?docId=emr_na-c01422264
Third Party Advisory, VDB Entry vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/29526
US Government Resource third-party-advisory x_refsource_cert-vn
http://www.kb.cert.org/vuls/id/221123
Third Party Advisory vdb-entry x_refsource_vupen
http://www.vupen.com/english/advisories/2008/1740/references
Various Sources x_refsource_misc
http://www.csis.dk/dk/forside/CSIS-RI-0003.pdf
Third Party Advisory, VDB Entry vdb-entry x_refsource_xf
https://exchange.xforce.ibmcloud.com/vulnerabilities/42846
Third Party Advisory, VDB Entry vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/29532
Third Party Advisory, VDB Entry vdb-entry x_refsource_sectrack
http://www.securitytracker.com/id?1020165

Scores

EPSS 0.2589
EPSS Percentile 96.3%

Details

Status published
Products (1)
hp/instant_support < 1.0.0.23
Published Jun 04, 2008
Tracked Since Feb 18, 2026