7.5
CVSSv2

CVE-2007-2814

Published: 22/05/2007 Updated: 29/07/2017
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 755
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

Multiple stack-based buffer overflows in the Pegasus ImagN' ActiveX control (IMW32O40.OCX) 4.00.041 allow remote malicious users to execute arbitrary code via (1) a long FileName parameter, or unspecified vectors involving the (2) BeginReport, (3) CreatePictureExA, (4) DefineImage, (5) DefineImageEx, (6) DefineImageFox, (7) CopyBufToClipExA, (8) LoadEx, (9) LoadFox, and other functions.

Vulnerable Product Search on Vulmon Subscribe to Product

pegasus imagn activex control 4.00.041

Exploits

<!- IE 6 / Pegasus ImagN' ActiveX Control (IMW32O40OCX V400041) remote buffer overflow exploit windows xp sp2 it version / eip overwrite method by rgod site: retrogodaltervistaorg mail: retrog at alice dot it software site: wwwpegasusimagingcom/ info/download locations:wwwgooglecom/search?hl=en&q=PEGASUS+IMAGN ...