CVE-2007-2238
50Vexday Risk Score
Patch soon. It has a working public exploit.
ssvc Attendepss 46%
from disclosure to weapon388 days
Published on NVDApr 16
1st PoC+388d
metasploitApr 15
exploitation probability
46%top 1% of all CVEs
observed exploitation
nono source reports it
1 public exploit(s)
Multiple stack-based buffer overflows in the Whale Client Components ActiveX control (WhlMgr.dll), as used in Microsoft Intelligent Application Gateway (IAG) before 3.7 SP2, allow remote attackers to execute arbitrary code via long arguments to the (1) CheckForUpdates or (2) UpdateComponents methods.
Affected products
n/a · n/apublic PoCs found — 1
exploitdbwww.exploit-db.com/exploits/16608unverified⚠ Public resources, to assess the exposure of systems you control or are authorized to test. Test only with authorization.