CVE-2007-3493

high Microsoft
CVSS v3 Base Score
7.5
AV:N/AC:L/Au:N/C:P/I:P/A:P
EPSS Score
45.2%
Exploitation probability in 30 days
Top 2% most likely to be exploited
Attack Characteristics
Attack Vector
Network
Attack Complexity
Low
Confidentiality
P
Integrity
P
Availability
P
Published: June 29, 2007 (6894 days ago)
Last Modified: April 23, 2026
Vendor: Microsoft
Source: NVD

Description

A certain ActiveX control in NCTWavChunksEditor2.dll 2.6.1.148 in NCTAudioStudio (NCTAudioStudio2) 2.7, as used by Sienzo DMM and probably other products, allows remote attackers to create or overwrite arbitrary files via a full pathname in the argument to the CreateFile method, a different product than CVE-2007-3400.

CWE

NVD-CWE-Other

Affected Products

microsoft internet explorernctsoft products nctaudiostudionctsoft products nctwavchunkseditor2.dll

References