peter bassill · operator
$ cve CVE-2007-6513 JSON

CVE-2007-6513 EXPLOIT

4.3
MEDIUM · CVSS 2.0 · EPSS 2.3% (pctl 83)

Patch early

A public exploit exists.

Description

HP eSupportDiagnostics ActiveX control (hpediag.dll) 1.0.11.0 exports dangerous methods, which allows remote attackers to (1) read arbitrary files via the ReadTextFile method, or (2) read arbitrary registry values via the ReadValue method.

Scoring

CVSS4.3 (MEDIUM, v2.0)
VectorAV:N/AC:M/Au:N/C:P/I:N/A:N
EPSS2.32% — more likely to be exploited than 83% of all CVEs
WeaknessCWE-200
On CISA KEVno
Public exploityes
Published2007-12-21
Last modified2026-06-16

Affected (1)

VendorProduct
hpesupportdiagnostics

Public exploits

References

→ the Explorer  ·  watch your stack  ·  NVD