← All CVEs

CVE-2007-4336

medium · 4.3

Buffer overflow in the Live Picture Corporation DXSurface.LivePicture.FlashPix.1 (DirectTransform FlashPix) ActiveX control in DXTLIPI.DLL 6.0.2.827, as packaged in Microsoft DirectX Media 6.0 SDK, allows remote attackers to execute arbitrary code via a long SourceUrl property value.

4.3
CVSS
50.7%
EPSS (exploit prob.)
99th
EPSS percentile
2007-08-14
Published

AV:N/AC:M/Au:N/C:N/I:N/A:P

Affected products

VendorProductAffected versions
microsoftdirectx_media6.0

Check a specific version with /api/v1/cve/match.

References

Query this programmatically:

curl https://evil-db.io/api/v1/cve/CVE-2007-4336