← All CVEs

CVE-2006-5270

high · 9.3

Integer overflow in the Microsoft Malware Protection Engine (mpengine.dll), as used by Windows Live OneCare, Antigen, Defender, and Forefront Security, allows user-assisted remote attackers to execute arbitrary code via a crafted PDF file.

9.3
CVSS
30.3%
EPSS (exploit prob.)
98th
EPSS percentile
2007-02-13
Published

AV:N/AC:M/Au:N/C:C/I:C/A:C

Affected products

VendorProductAffected versions
microsoftantigenall versions
microsoftforefront_securityall versions
microsoftmalware_protection_engineall versions
microsoftwindows_defenderall versions
microsoftwindows_live_onecareall versions

Check a specific version with /api/v1/cve/match.

References

Query this programmatically:

curl https://evil-db.io/api/v1/cve/CVE-2006-5270