CVE-2007-1684: Critical severity SolidWorks sldimdownload ActiveX control vulnerability
Published Apr 6, 2007
·Updated
The Run function in SolidWorks sldimdownload ActiveX control in sldimdownload.dll before 16.0.0.6 allows remote attackers to execute arbitrary commands via the (1) installerpath and (2) applicationarguments arguments.
Affected Software
1 affected component
SolidWorks sldimdownload ActiveX control=16.0.0.5
Remediation
Patch Available
Patch Available
Patch Available
Event History
Apr 6, 2007
CVE Published
01:19 AM
CVE Published
via MITRE·05:00 AM
Data Sourced
via MITRE·05:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2007-1684?
CVE-2007-1684 has a CVSS score indicating it is a high severity vulnerability allowing remote code execution.
2
How do I fix CVE-2007-1684?
To fix CVE-2007-1684, users should upgrade the SolidWorks sldimdownload ActiveX control to version 16.0.0.6 or later.
3
What software is affected by CVE-2007-1684?
CVE-2007-1684 affects SolidWorks sldimdownload ActiveX control versions prior to 16.0.0.6.
4
What types of attacks can occur due to CVE-2007-1684?
CVE-2007-1684 allows remote attackers to execute arbitrary commands on the affected system.
5
When was CVE-2007-1684 reported?
CVE-2007-1684 was reported in 2007.