Exploitation Summary
EIP tracks 1 public exploit for CVE-2007-2526. PoCs published by shinnai.
AI-analyzed exploit summary This exploit targets a buffer overflow vulnerability in the ConnectAsyncEx method of the ActiveX control (CLSID: 62FA83F7-20EC-4D62-AC86-BAB705EE1CCD) by sending a crafted string to trigger arbitrary code execution.
Description
Heap-based buffer overflow in the ConnectAsyncEx function in VNC Viewer ActiveX control (scvncctrl.dll) in the SmartCode VNC Manager 3.6 allows remote attackers to execute arbitrary code via a long argument.
Exploits (1)
This exploit targets a buffer overflow vulnerability in the ConnectAsyncEx method of the ActiveX control (CLSID: 62FA83F7-20EC-4D62-AC86-BAB705EE1CCD) by sending a crafted string to trigger arbitrary code execution.