HTTP: ACD Systems ACDSee Products XPM File Colors Parameter Buffer Overflow

This signature detects attempts to exploit a known vulnerability against ACD Systems ACDSee. A successful attack can lead to arbitrary code execution.

Extended Description

ACDSee is prone to a buffer-overflow vulnerability because the application fails to bounds-check user-supplied data before copying it into an insufficiently sized buffer. An attacker can exploit this issue to execute arbitrary code in the context of the user running the affected application. Failed exploit attempts will result in a denial of service. This issue affects ACDSee 9.0; other versions may also be vulnerable.

Affected Products

Acd_systems_inc acdsee_quick_view

References

BugTraq: 23620

CVE: CVE-2007-2193

Short Name
HTTP:STC:DL:ACDSEE-XPM-COLOR
Severity
Major
Recommended
False
Recommended Action
Drop
Category
HTTP
Keywords
ACD ACDSee Buffer CVE-2007-2193 Colors File Overflow Parameter Products Systems XPM bid:23620
Release Date
10/06/2010
Supported Platforms

srx-branch-12.3

srx-19.3

srx-branch-19.3

vsrx3bsd-19.2

srx-branch-19.4

vsrx-19.4

mx-12.3

mx-19.4

vmx-19.4

mx-19.3

vsrx3bsd-19.4

srx-19.4

vsrx-12.3

vmx-19.3

vsrx-19.2

srx-12.3

Sigpack Version
3336
False Positive
Unknown
Vendors

Acd_systems_inc

CVSS Score

9.3

Found a potential security threat?