CVE-2007-6493: Input Validation
Published Dec 20, 2007
·Updated
The IMWeb.IMWebControl.1 ActiveX control in IMWeb.dll 7.0.0.x, and possibly IMWebControl.dll, in iMesh 7.1.0.x and earlier allows remote attackers to execute arbitrary code via a certain argument to the SetHandler method.
Affected Software
1 affected component
Imesh.com Imesh<=7.1.0.37263
Event History
Dec 20, 2007
CVE Published
08:46 PM
Dec 21, 2007
CVE Published
via MITRE·01:00 AM
Data Sourced
via MITRE·01:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2007-6493?
CVE-2007-6493 is considered critical due to its potential to allow remote code execution.
2
How do I fix CVE-2007-6493?
To fix CVE-2007-6493, users should upgrade to a version of iMesh that is later than 7.1.0.37263.
3
What software versions are affected by CVE-2007-6493?
CVE-2007-6493 affects versions of iMesh prior to 7.1.0.37263.
4
Who is impacted by CVE-2007-6493?
Users of iMesh versions 7.1.0.x and earlier are impacted by CVE-2007-6493.
5
What type of vulnerability is CVE-2007-6493?
CVE-2007-6493 is a remote code execution vulnerability in an ActiveX control.