CVE-2007-3040

Microsoft Windows 2000 - Memory Corruption

Title source: rule

Description

Stack-based buffer overflow in agentdpv.dll 2.0.0.3425 in Microsoft Agent on Windows 2000 SP4 allows remote attackers to execute arbitrary code via a crafted URL to the Agent (Agent.Control) ActiveX control, which triggers an overflow within the Agent Service (agentsrv.exe) process, a different issue than CVE-2007-1205.

Exploits (1)

exploitdb WORKING POC VERIFIED
by Yamata Li · htmlremotewindows
https://www.exploit-db.com/exploits/30567

Scores

EPSS 0.5881
EPSS Percentile 98.2%

Details

CWE
CWE-119
Status published
Products (1)
microsoft/windows_2000
Published Sep 12, 2007
Tracked Since Feb 18, 2026