CVE-2007-2938

Ademco ATNBaseLoader100 <5.4.0.6 - Buffer Overflow

Title source: llm

Description

Buffer overflow in the BaseRunner ActiveX control in the Ademco ATNBaseLoader100 Module (ATNBaseLoader100.dll) 5.4.0.6, when Internet Explorer 6 is used, allows remote attackers to execute arbitrary code via a long argument to the (1) Send485CMD method, and possibly the (2) SetLoginID, (3) AddSite, (4) SetScreen, and (5) SetVideoServer methods.

Exploits (1)

exploitdb WORKING POC VERIFIED
by rgod · htmlremotewindows
https://www.exploit-db.com/exploits/3993

Scores

EPSS 0.5696
EPSS Percentile 98.1%

Details

Status published
Products (2)
honeywell/ademco_atnbaseloader100_module 5.4.0.6
microsoft/internet_explorer 6
Published May 31, 2007
Tracked Since Feb 18, 2026