CVE-2007-3201
Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
12/06/2007
Last modified:
16/10/2018
Description
Visual truncation vulnerability in Windows Privacy Tray (WinPT) 1.2.0 allows user-assisted remote attackers to install a key listed under the wrong user ID, and possibly cause the user to encrypt a victim's correspondence with this attacker-supplied key, via a key ID composed of the attacker's user ID, space characters, an invalid WinPT message, additional space characters, and the victim's user ID.
Impact
Base Score 2.0
7.10
Severity 2.0
HIGH
Vulnerable products and versions
CPE | From | Up to |
---|---|---|
cpe:2.3:a:winpt:winpt:1.2.0:*:*:*:*:*:*:* |
To consult the complete list of CPE names with products and versions, see this page
References to Advisories, Solutions, and Tools
- http://osvdb.org/41727
- http://securityreason.com/securityalert/2791
- http://wald.intevation.org/tracker/index.php?func=detail&aid=327&group_id=14&atid=138
- http://www.securityfocus.com/archive/1/471045/100/0/threaded
- http://www.securityfocus.com/bid/24412
- https://exchange.xforce.ibmcloud.com/vulnerabilities/34813