CVE-2007-4827
Last modified
CVE-2007-4827 is a vulnerability of currently unknown severity. Unspecified vulnerability in the Modbus/TCP Diagnostic function in MiniHMI.exe for the Automated Solutions Modbus Slave ActiveX Control before 1.5 allows remote attackers to corrupt the heap and possibly execute arbitrary code via malformed Modbus requests to TCP port 502.. EPSS estimates a 4.73% chance of exploitation in the next 30 days.
Description
Unspecified vulnerability in the Modbus/TCP Diagnostic function in MiniHMI.exe for the Automated Solutions Modbus Slave ActiveX Control before 1.5 allows remote attackers to corrupt the heap and possibly execute arbitrary code via malformed Modbus requests to TCP port 502.
Metrics
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Automated Solutions | Modbus Slave Activex Control | <= 1.4 |
References
- http://www.kb.cert.org/vuls/id/981849US Government Resource
- http://www.kb.cert.org/vuls/id/981849US Government Resource
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2007-4827?
How severe is CVE-2007-4827?
How do I fix CVE-2007-4827?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2007
- CVE-2007-4821Buffer overflow in a certain ActiveX control in officeviewer…
- CVE-2007-4822Cross-site request forgery (CSRF) vulnerability in the devic…
- CVE-2007-4823Multiple buffer overflows in Google Picasa have unspecified …
- CVE-2007-4824Multiple cross-application scripting (XAS) vulnerabilities i…
- CVE-2007-4825Directory traversal vulnerability in PHP 5.2.4 and earlier a…
- CVE-2007-4826bgpd in Quagga before 0.99.9 allows explicitly configured BG…
- CVE-2007-4828Cross-site scripting (XSS) vulnerability in the API pretty-p…
- CVE-2007-4829Directory traversal vulnerability in the Archive::Tar Perl m…
- CVE-2007-4830Cross-site scripting (XSS) vulnerability in CMD_BANDWIDTH_BR…
- CVE-2007-4831Multiple cross-site scripting (XSS) vulnerabilities in accou…
- CVE-2007-4832Format string vulnerability in CellFactor Revolution 1.03 an…
- CVE-2007-4833Unspecified vulnerability in the Edge Component in IBM WebSp…
Are you affected by CVE-2007-4827?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
