CVE-2007-2814
Last modified
CVE-2007-2814 is a vulnerability of currently unknown severity. Multiple stack-based buffer overflows in the Pegasus ImagN' ActiveX control (IMW32O40.OCX) 4.00.041 allow remote attackers to execute arbitrary code via (1) a long FileName parameter, or unspecified vectors involving the (2) BeginReport, (3) CreatePictureExA, (4) DefineImage, (5) DefineImageEx, (6) DefineImageFox, (7) CopyBufToClipExA, (8) LoadEx, (9) LoadFox, and other functions.. EPSS estimates a 5.48% chance of exploitation in the next 30 days.
Description
Multiple stack-based buffer overflows in the Pegasus ImagN' ActiveX control (IMW32O40.OCX) 4.00.041 allow remote attackers to execute arbitrary code via (1) a long FileName parameter, or unspecified vectors involving the (2) BeginReport, (3) CreatePictureExA, (4) DefineImage, (5) DefineImageEx, (6) DefineImageFox, (7) CopyBufToClipExA, (8) LoadEx, (9) LoadFox, and other functions.
Metrics
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Pegasus | Imagn Activex Control | 4.00.041 |
References
- http://secunia.com/advisories/25351Vendor Advisory
- http://secunia.com/advisories/25351Vendor Advisory
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2007-2814?
How severe is CVE-2007-2814?
How do I fix CVE-2007-2814?
Are you affected by CVE-2007-2814?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
