9.3
CVSSv2

CVE-2007-3040

Published: 12/09/2007 Updated: 16/10/2018
CVSS v2 Base Score: 9.3 | Impact Score: 10 | Exploitability Score: 8.6
VMScore: 935
Vector: AV:N/AC:M/Au:N/C:C/I:C/A:C

Vulnerability Summary

Stack-based buffer overflow in agentdpv.dll 2.0.0.3425 in Microsoft Agent on Windows 2000 SP4 allows remote malicious users to execute arbitrary code via a crafted URL to the Agent (Agent.Control) ActiveX control, which triggers an overflow within the Agent Service (agentsrv.exe) process, a different issue than CVE-2007-1205.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

microsoft windows 2000

Exploits

source: wwwsecurityfocuscom/bid/25566/info Microsoft Agent (agentsvrexe) is prone to a stack-based buffer-overflow vulnerability because the application fails to adequately bounds-check user-supplied data Successfully exploiting this issue allows remote attackers to execute arbitrary code in the context of the currently logged-in user ...