CVE-2007-4464

CRLF injection vulnerability in the Fileinfo 2.0.9 plugin for Total Commander allows user-assisted remote attackers to spoof the information in the Image File Header tab via strings with CRLF sequences in the IMAGE_EXPORT_DIRECTORY array in a PE file, which could complicate forensics investigations.
Configurations

Configuration 1

cpe:2.3:a:ghisler:total_commander:*:*:*:*:*:*:*:*
cpe:2.3:a:fransois_gannier:fileinfo_plugin:2.09:*:*:*:*:*:*:*

Information

Published : 2007-08-21 09:17

Updated : 2018-10-15 09:35


NVD link : CVE-2007-4464

Mitre link : CVE-2007-4464

Products Affected
No products.
CWE