GoodFellas Security Research Team

5 exploits Active since Jun 2007
CVE-2007-4059 EXPLOITDB html WORKING POC
EMC VMware <5.5.3.42958 - Path Traversal
Absolute path traversal vulnerability in a certain ActiveX control in IntraProcessLogging.dll 5.5.3.42958 in EMC VMware allows remote attackers to create or overwrite arbitrary files via a full pathname in the argument to the SetLogFileName method.
CVE-2007-4155 EXPLOITDB html WORKING POC
EMC VMware 6.0.0 - Path Traversal
Absolute path traversal vulnerability in a certain ActiveX control in vielib.dll in EMC VMware 6.0.0 allows remote attackers to execute arbitrary local programs via a full pathname in the first two arguments to the (1) CreateProcess or (2) CreateProcessEx method.
CVE-2007-3435 EXPLOITDB html WORKING POC
RKD Software Barcode Activex - Buffer Overflow
Stack-based buffer overflow in the BeginPrint method in a certain ActiveX control in RKD Software (barcodetools.com) BarCodeAx.dll 4.9 allows remote attackers to execute arbitrary code via a long argument.
CVE-2007-3785 EXPLOITDB html WORKING POC
Eldos Corporation Secureblackbox - Denial of Service
Absolute path traversal vulnerability in a certain ActiveX control in PGPBBox.dll in EldoS SecureBlackbox (sbb) 5.1.0.112 allows remote attackers to create or overwrite arbitrary files via a full pathname in the argument to the SaveToFile method. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.
EIP-2026-118916 EXPLOITDB html WORKING POC
mlsrvx.dll 1.8.9.1 ArGoSoft Mail Server - Data Write/Code Execution