CVE-2007-2953

Description

Format string vulnerability in the helptags_one function in src/ex_cmds.c in Vim 6.4 and earlier, and 7.x up to 7.1, allows user-assisted remote attackers to execute arbitrary code via format string specifiers in a help-tags tag in a help file, related to the helptags command.

Risk Information

Base Score
9.8
MODERATE
Vector
AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
EPSS Score
Exploitation Probability
11.918

Associated Vulnerability

VulnerabilityOS Platform
Multiple Vulnerabilities are affected in Vim 6.4Windows
Multiple Vulnerabilities are affected in Vim 7.0Windows
Multiple Vulnerabilities are affected in Vim 7.1Windows
Vulnerabilities CVE-2007-2953 are affected in Vim 7.1.38Windows

Patch Details

No records found

References

https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234