edraw records
7 published records for vendor edraw.
Researcher profile
- Entered KEV
- 0 · 0%
- Weaponized
- 0 · 0%
- Pre-auth RCE
- 4
- With a fix record
- 0%
- Median publish → KEV
- No record has entered KEV
Records by year
Bar: total · dark part: CISA KEV.
Recurring classes
- CWE-119 Improper Restriction of Operations within the Bounds of a Memory Buffer3
- CWE-22 Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')2
- CWE-94 Improper Control of Generation of Code ('Code Injection')1
The weakness classes this vendor ships most often: where to look.
CWEAttack profile
All records
7 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
45Plan | CVE-2007-5257Proof of concept | Stack-based buffer overflow in the EDraw.OfficeViewer ActiveX control in officeviewer.ocx in EDraw Office Viewer Component 5.3.220.1 and earedraw · office viewer component · CWE-119 | Critical10.0 | — | 15.2% | Oct 6, 2007 |
41Plan | CVE-2007-3169Proof of concept | Buffer overflow in a certain ActiveX control in the EDraw Office Viewer Component (edrawofficeviewer.ocx) 4.0.5.20, and other versions beforedraw · office viewer component · CWE-119 | Critical9.3 | — | 11.9% | Jun 11, 2007 |
40Plan | CVE-2007-4821Proof of concept | Buffer overflow in a certain ActiveX control in officeviewer.ocx 5.2.218.1 in EDraw Office Viewer Component 5.2 allows remote attackers to eedraw · office viewer component · CWE-119 | Critical9.3 | — | 9.2% | Sep 11, 2007 |
38Monitor | CVE-2009-2169Proof of concept | Insecure method vulnerability in the PDFVIEWER.PDFViewerCtrl.1 ActiveX control (pdfviewer.ocx) in Edraw PDF Viewer Component before 3.2.0.12edraw · pdf viewer component · CWE-94 | Critical9.3 | — | 4.5% | Jun 22, 2009 |
38Monitor | CVE-2007-5826Proof of concept | Absolute path traversal vulnerability in the EDraw Flowchart ActiveX control in EDImage.ocx 2.0.2005.1104 allows remote attackers to create edraw · flowchart activex · CWE-22 | Critical9.3 | — | 3.7% | Nov 5, 2007 |
38Monitor | CVE-2007-4420Proof of concept | Absolute path traversal vulnerability in a certain ActiveX control in officeviewer.ocx 5.1.199.1 in EDraw Office Viewer Component 5.1 allowsedraw · office viewer component · CWE-22 | Critical9.3 | — | 2.9% | Aug 18, 2007 |
33Monitor | CVE-2007-3168Proof of concept | A certain ActiveX control in the EDraw Office Viewer Component (edrawofficeviewer.ocx) 4.0.5.20, and other versions before 5.0, allows remotedraw · office viewer component | High7.8 | — | 6.3% | Jun 11, 2007 |
- CVE-2007-525745Plan
Stack-based buffer overflow in the EDraw.OfficeViewer ActiveX control in officeviewer.ocx in EDraw Office Viewer Component 5.3.220.1 and ear
CriticalCVSS 10.0Proof of conceptEPSS 15%edraw · office viewer componentOct 6, 2007
- CVE-2007-316941Plan
Buffer overflow in a certain ActiveX control in the EDraw Office Viewer Component (edrawofficeviewer.ocx) 4.0.5.20, and other versions befor
CriticalCVSS 9.3Proof of conceptEPSS 12%edraw · office viewer componentJun 11, 2007
- CVE-2007-482140Plan
Buffer overflow in a certain ActiveX control in officeviewer.ocx 5.2.218.1 in EDraw Office Viewer Component 5.2 allows remote attackers to e
CriticalCVSS 9.3Proof of conceptEPSS 9%edraw · office viewer componentSep 11, 2007
- CVE-2009-216938Monitor
Insecure method vulnerability in the PDFVIEWER.PDFViewerCtrl.1 ActiveX control (pdfviewer.ocx) in Edraw PDF Viewer Component before 3.2.0.12
CriticalCVSS 9.3Proof of conceptEPSS 4%edraw · pdf viewer componentJun 22, 2009
- CVE-2007-582638Monitor
Absolute path traversal vulnerability in the EDraw Flowchart ActiveX control in EDImage.ocx 2.0.2005.1104 allows remote attackers to create
CriticalCVSS 9.3Proof of conceptEPSS 4%edraw · flowchart activexNov 5, 2007
- CVE-2007-442038Monitor
Absolute path traversal vulnerability in a certain ActiveX control in officeviewer.ocx 5.1.199.1 in EDraw Office Viewer Component 5.1 allows
CriticalCVSS 9.3Proof of conceptEPSS 3%edraw · office viewer componentAug 18, 2007
- CVE-2007-316833Monitor
A certain ActiveX control in the EDraw Office Viewer Component (edrawofficeviewer.ocx) 4.0.5.20, and other versions before 5.0, allows remot
HighCVSS 7.8Proof of conceptEPSS 6%edraw · office viewer componentJun 11, 2007