CVE-2007-2523 in Broadcom and CA Technologies Products
Published on May 11, 2007
CA Anti-Virus for the Enterprise r8 and Threat Manager r8 before 20070510 use weak permissions (NULL security descriptor) for the Task Service shared file mapping, which allows local users to modify this mapping and gain privileges by triggering a stack-based buffer overflow in InoCore.dll before 8.0.448.0.
Products Associated with CVE-2007-2523
stack.watch emails you whenever new vulnerabilities are published in Broadcom Integrated Threat Management or CA Technologies Anti Virus For The Enterprise. Just hit a watch button to start following.
Exploit Probability
EPSS
0.59%
Percentile
68.78%
EPSS (Exploit Prediction Scoring System) scores estimate the probability that a vulnerability will be exploited in the wild within the next 30 days. The percentile shows you how this score compares to all other vulnerabilities.