PoC Index

CVE-2007-6530

HIGH 9.3EPSS 36.8%

Buffer overflow in the XUpload.ocx ActiveX control in Persits Software XUpload 2.1.0.1, and probably other versions before 3.0, as used by HP Mercury LoadRunner and Groove Virtual Office, allows remote attackers to execute arbitrary code via a long argument to the AddFolder function.

CVSS v2.0
9.3 HIGHAV:N/AC:M/Au:N/C:C/I:C/A:C
EPSS
36.83% chance of exploitation in the next 30 days, 98th percentile
Published
2007-12-27
Updated
2024-08-07

Metasploit modules (1)

ExploitDB entries (2)

References

Related