CVE-2006-4507
Estado: ModificadaMedia (4.6)—
Unspecified vulnerability in the TIFF viewer (possibly libTIFF) in the Photo Viewer in the Sony PlaystationPortable (PSP) 2.00 through 2.80 allows local users to execute arbitrary code via crafted TIFF images. NOTE: due to lack of details, it is not clear whether this is related to other issues such as CVE-2006-3464 or CVE-2006-3465.
CVSS
- Versión: 2.0
- Vector: AV:L/AC:L/Au:N/C:P/I:P/A:P
- Puntuación base: 4.6
Probabilidad de explotación (EPSS)
- Probabilidad de explotación en los próximos 30 días: 0.38%
- Percentil entre todas las CVEs puntuadas: 30
- Fecha de la puntuación: 6/10/2026
EPSS (Exploit Prediction Scoring System, de FIRST) estima la probabilidad de que una vulnerabilidad sea explotada en 30 días. Complementa a CVSS (impacto) y a CISA KEV (explotación confirmada).
Tecnologías afectadas (1)
CWE
- NVD-CWE-Other
Referencias
- http://noobz.eu/content/home.html#280806
- http://secunia.com/advisories/21672
- http://www.vupen.com/english/advisories/2006/3419
- https://exchange.xforce.ibmcloud.com/vulnerabilities/28689
- http://noobz.eu/content/home.html#280806
- http://secunia.com/advisories/21672
- http://www.vupen.com/english/advisories/2006/3419
- https://exchange.xforce.ibmcloud.com/vulnerabilities/28689
JSON original (NVD)
Mostrar
{
"id": "CVE-2006-4507",
"cveTags": [],
"metrics": {
"cvssMetricV2": [
{
"type": "Primary",
"source": "nvd@nist.gov",
"cvssData": {
"version": "2.0",
"baseScore": 4.6,
"accessVector": "LOCAL",
"vectorString": "AV:L/AC:L/Au:N/C:P/I:P/A:P",
"authentication": "NONE",
"integrityImpact": "PARTIAL",
"accessComplexity": "LOW",
"availabilityImpact": "PARTIAL",
"confidentialityImpact": "PARTIAL"
},
"acInsufInfo": false,
"impactScore": 6.4,
"baseSeverity": "MEDIUM",
"obtainAllPrivilege": false,
"exploitabilityScore": 3.9,
"obtainUserPrivilege": true,
"obtainOtherPrivilege": false,
"userInteractionRequired": false
}
]
},
"affected": [
{
"source": "cve@mitre.org",
"affectedData": [
{
"vendor": "n/a",
"product": "n/a",
"versions": [
{
"status": "affected",
"version": "n/a"
}
]
}
]
}
],
"published": "2006-08-31T23:04:00.000",
"references": [
{
"url": "http://noobz.eu/content/home.html#280806",
"source": "cve@mitre.org"
},
{
"url": "http://secunia.com/advisories/21672",
"tags": [
"Vendor Advisory"
],
"source": "cve@mitre.org"
},
{
"url": "http://www.vupen.com/english/advisories/2006/3419",
"source": "cve@mitre.org"
},
{
"url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/28689",
"source": "cve@mitre.org"
},
{
"url": "http://noobz.eu/content/home.html#280806",
"source": "af854a3a-2127-422b-91ae-364da2661108"
},
{
"url": "http://secunia.com/advisories/21672",
"tags": [
"Vendor Advisory"
],
"source": "af854a3a-2127-422b-91ae-364da2661108"
},
{
"url": "http://www.vupen.com/english/advisories/2006/3419",
"source": "af854a3a-2127-422b-91ae-364da2661108"
},
{
"url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/28689",
"source": "af854a3a-2127-422b-91ae-364da2661108"
}
],
"vulnStatus": "Modified",
"weaknesses": [
{
"type": "Primary",
"source": "nvd@nist.gov",
"description": [
{
"lang": "en",
"value": "NVD-CWE-Other"
}
]
}
],
"descriptions": [
{
"lang": "en",
"value": "Unspecified vulnerability in the TIFF viewer (possibly libTIFF) in the Photo Viewer in the Sony PlaystationPortable (PSP) 2.00 through 2.80 allows local users to execute arbitrary code via crafted TIFF images. NOTE: due to lack of details, it is not clear whether this is related to other issues such as CVE-2006-3464 or CVE-2006-3465."
},
{
"lang": "es",
"value": "Vulnerabilidad no especificada en el visor RIFF (posiblemente libTIFF) en el Visor de Fotografías en la Sony Playstation Portable (PSP) 2.00 a 2.80 permite a usuarios locales ejecutar código de su elección mediante imágenes TIFF creadas artesanalmente. NOTA: debido a la falta de detalles, no está claro si está relacionada con otras vulnerabilidades como CVE-2006-3464 o CVE-2006-3465."
}
],
"lastModified": "2026-06-16T22:29:14.270",
"configurations": [
{
"nodes": [
{
"negate": false,
"cpeMatch": [
{
"criteria": "cpe:2.3:h:sony:playstation_portable:2.00:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "F9B7B3CA-BC2C-4EE5-85D4-DEF315AE4C1F"
},
{
"criteria": "cpe:2.3:h:sony:playstation_portable:2.10:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "3B71982B-0217-4E9C-A6BF-2414EC874FFB"
},
{
"criteria": "cpe:2.3:h:sony:playstation_portable:2.20:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "16F0F385-EFD5-4CA7-B81A-9D9E35D47B8B"
},
{
"criteria": "cpe:2.3:h:sony:playstation_portable:2.30:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "ABD8A169-63E6-48F4-AADD-87AC8EA4504D"
},
{
"criteria": "cpe:2.3:h:sony:playstation_portable:2.40:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "0FC11E59-9FF4-49F9-AE27-37664C2D5EF0"
},
{
"criteria": "cpe:2.3:h:sony:playstation_portable:2.50:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "C8C06FD4-8C74-4CBD-8A68-924097A0803C"
},
{
"criteria": "cpe:2.3:h:sony:playstation_portable:2.60:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "464F161B-2525-4F2F-8987-F52C1490E16F"
},
{
"criteria": "cpe:2.3:h:sony:playstation_portable:2.70:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "87397BDF-FDB9-4627-A246-B364EEAF867B"
},
{
"criteria": "cpe:2.3:h:sony:playstation_portable:2.80:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "91E4947F-B049-4F81-A0EF-CFC2AB907712"
}
],
"operator": "OR"
}
]
}
],
"sourceIdentifier": "cve@mitre.org"
}