CVE-2007-4802
23Vexday Risk Score
No sign of exploitation. It has a public proof of concept.
ssvc Attendepss 9.0%
exploitation probability
9.0%top 5% of all CVEs
observed exploitation
nono source reports it
2 public exploit(s)
Multiple heap-based buffer overflows in GlobalLink 2.7.0.8 allow remote attackers to execute arbitrary code via (1) a long eighth argument to the SetInfo method in a certain ActiveX control in glItemCom.dll or (2) a long second argument to the SetClientInfo method in a certain ActiveX control in glitemflat.dll.
Affected products
n/a · n/apublic PoCs found — 2✓ VexDay Proof
cve_reference✓ VexDay Proofwww.exploit-db.com/exploits/4366cve_reference✓ VexDay Proofwww.exploit-db.com/exploits/4372⚠ Public resources, to assess the exposure of systems you control or are authorized to test. Test only with authorization.
References
http://osvdb.org/45886http://osvdb.org/45887https://exchange.xforce.ibmcloud.com/vulnerabilities/36470https://exchange.xforce.ibmcloud.com/vulnerabilities/36501https://www.exploit-db.com/exploits/4366https://www.exploit-db.com/exploits/4372http://www.securityfocus.com/bid/25565http://www.securityfocus.com/bid/25586