CVE-2007-3638
23Vexday Risk Score
No sign of exploitation. It has a public proof of concept.
ssvc Attendepss 2.4%
from disclosure to weapon6 days
Published on NVDJul 10
1st PoC+6d
exploitation probability
2.4%top 17% of all CVEs
observed exploitation
nono source reports it
1 public exploit(s)
Buffer overflow in Yahoo! Messenger 8.1 allows user-assisted remote authenticated users, who are listed in an address book, to execute arbitrary code via unspecified vectors, aka ZD-00000005. NOTE: this information is based upon a vague advisory by a vulnerability information sales organization that does not coordinate with vendors or release actionable advisories. A CVE has been assigned for tracking purposes, but duplicates with other CVEs are difficult to determine.
Affected products
n/a · n/apublic PoCs found — 1✓ VexDay Proof
exploitdb✓ VexDay Proofwww.exploit-db.com/exploits/30314⚠ Public resources, to assess the exposure of systems you control or are authorized to test. Test only with authorization.