CVE-2007-2814

Pegasus ImagN' ActiveX control 4.00.041 - Buffer Overflow

Title source: llm
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for CVE-2007-2814. PoCs published by rgod.

AI-analyzed exploit summary This exploit targets a buffer overflow vulnerability in the Pegasus ImagN' ActiveX Control (IMW32O40.OCX V4.00.041) via the Filename property. It overwrites EIP and SEH pointers to execute shellcode, achieving remote code execution on Windows XP SP2.

Description

Multiple stack-based buffer overflows in the Pegasus ImagN' ActiveX control (IMW32O40.OCX) 4.00.041 allow remote attackers to execute arbitrary code via (1) a long FileName parameter, or unspecified vectors involving the (2) BeginReport, (3) CreatePictureExA, (4) DefineImage, (5) DefineImageEx, (6) DefineImageFox, (7) CopyBufToClipExA, (8) LoadEx, (9) LoadFox, and other functions.

Exploits (1)

exploitdb WORKING POC VERIFIED
by rgod · phpremotewindows
https://www.exploit-db.com/exploits/3966

This exploit targets a buffer overflow vulnerability in the Pegasus ImagN' ActiveX Control (IMW32O40.OCX V4.00.041) via the Filename property. It overwrites EIP and SEH pointers to execute shellcode, achieving remote code execution on Windows XP SP2.

Classification
Working Poc 95%
Attack Type
Rce
Complexity
Moderate
Reliability
Reliable
Target: Pegasus ImagN' ActiveX Control (IMW32O40.OCX V4.00.041)
No auth needed
Prerequisites: Victim must use Internet Explorer 6 with the vulnerable ActiveX control installed
devstral-2 · analyzed Feb 16, 2026 Full analysis →

References (6)

Core 6
Core References
Vendor Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/25351
Third Party Advisory, VDB Entry vdb-entry x_refsource_xf
https://exchange.xforce.ibmcloud.com/vulnerabilities/34419
Exploit vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/24086
Third Party Advisory, VDB Entry vdb-entry x_refsource_osvdb
http://osvdb.org/36518
Third Party Advisory vdb-entry x_refsource_vupen
http://www.vupen.com/english/advisories/2007/1899

Scores

EPSS 0.0548
EPSS Percentile 91.7%

Details

Status published
Products (1)
pegasus/imagn_activex_control 4.00.041
Published May 22, 2007
Tracked Since Feb 18, 2026