PT-2009-1162 · Sap · Sap Gui

Published

2009-04-01

·

Updated

2017-07-29

·

CVE-2007-4475

CVSS v2.0

9.3

High

VectorAV:N/AC:M/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions SAPgui versions prior to 7.10 Patch Level 9
Description The issue is related to a stack-based buffer overflow in the EAI WebViewer3D ActiveX control, which is part of the SAPgui. This overflow can be triggered by passing a long argument to the SaveViewToSessionFile method, potentially allowing remote attackers to execute arbitrary code.
Recommendations For SAPgui versions prior to 7.10 Patch Level 9, update to version 7.10 Patch Level 9 or later to resolve the issue. As a temporary workaround, consider restricting access to the SaveViewToSessionFile method in the webviewer3d.dll ActiveX control until a patch is applied.

Exploit

Fix

Buffer Overflow

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2007-4475

Affected Products

Sap Gui