CVE-2007-2787
23Vexday Risk Score
No sign of exploitation. It has a public proof of concept.
ssvc Attendepss 7.5%
exploitation probability
7.5%top 6% of all CVEs
observed exploitation
nono source reports it
2 public exploit(s)
Stack-based buffer overflow in the BrowseDir function in the (1) lttmb14E.ocx or (2) LTRTM14e.DLL ActiveX control in LeadTools Raster Thumbnail Object Library 14.5.0.44 allows remote attackers to execute arbitrary code via a long argument.
Affected products
n/a · n/apublic PoCs found — 2✓ VexDay Proof
cve_reference✓ VexDay Proofwww.exploit-db.com/exploits/3952cve_reference✓ VexDay Proofwww.exploit-db.com/exploits/3951⚠ Public resources, to assess the exposure of systems you control or are authorized to test. Test only with authorization.
References
http://moaxb.blogspot.com/2007/05/moaxb-19-leadtools-thumbnail-browser.htmlhttp://moaxb.blogspot.com/2007/05/moaxb-20-leadtools-raster-thumbnail.htmlhttp://osvdb.org/36028http://osvdb.org/36029http://secunia.com/advisories/25331http://secunia.com/advisories/25376https://exchange.xforce.ibmcloud.com/vulnerabilities/34378https://exchange.xforce.ibmcloud.com/vulnerabilities/34379https://www.exploit-db.com/exploits/3951https://www.exploit-db.com/exploits/3952http://www.securityfocus.com/bid/24053http://www.securityfocus.com/bid/24057