CVE-2007-2417

Progress Software Progress <9.1E - OpenEdge <10.1x - Buffer Overflow

Title source: llm

Description

Heap-based buffer overflow in _mprosrv.exe in Progress Software Progress 9.1E and OpenEdge 10.1x, as used by the RSA Authentication Manager 6.0 and 6.1, SecurID Appliance 2.0, ACE/Server 5.2, and possibly other products, allows remote attackers to execute arbitrary code via crafted packets. NOTE: this issue might overlap CVE-2007-3491.

Scores

EPSS 0.0204
EPSS Percentile 83.6%

Classification

Status draft

Affected Products (4)

progress/openedge
progress/openedge
progress/progress
rsa/ace_server

Timeline

Published Jul 15, 2007
Tracked Since Feb 18, 2026