CVE-2007-1891
Last modified
CVE-2007-1891 is a vulnerability of currently unknown severity. Stack-based buffer overflow in the GetPrivateProfileSectionW function in Akamai Technologies Download Manager ActiveX Control (DownloadManagerV2.ocx) after 2.0.4.4 but before 2.2.1.0 allows remote attackers to execute arbitrary code, related to misinterpretation of the nSize parameter as a byte count instead of a wide character count.. EPSS estimates a 6.77% chance of exploitation in the next 30 days.
Description
Stack-based buffer overflow in the GetPrivateProfileSectionW function in Akamai Technologies Download Manager ActiveX Control (DownloadManagerV2.ocx) after 2.0.4.4 but before 2.2.1.0 allows remote attackers to execute arbitrary code, related to misinterpretation of the nSize parameter as a byte count instead of a wide character count.
Metrics
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Akamai Technologies | Download Manager | 2.2.0.0 |
References
- http://labs.idefense.com/intelligence/vulnerabilities/display.php?id=514Patch, Vendor Advisory
- http://www.kb.cert.org/vuls/id/120241US Government Resource
- http://labs.idefense.com/intelligence/vulnerabilities/display.php?id=514Patch, Vendor Advisory
- http://www.kb.cert.org/vuls/id/120241US Government Resource
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2007-1891?
How severe is CVE-2007-1891?
How do I fix CVE-2007-1891?
Are you affected by CVE-2007-1891?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
