CVE-2007-3703

Zenturi Program Checker Pro - Stack-Based Buffer Overflow via Fill Method

Title source: llm
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for CVE-2007-3703. PoCs published by callAX.

AI-analyzed exploit summary This exploit leverages a stack-based buffer overflow in the `Fill` method of `sasatl.dll` (v1.5.0.531) via JavaScript heap spraying to achieve remote code execution. The payload is delivered through an ActiveX control (CLSID: 7D6B5B29-FC7E-11D1-9288-00104B885781) and targets Internet Explorer on Windows XP/Vista.

Description

Stack-based buffer overflow in a certain ActiveX control in sasatl.dll 1.5.0.531 in Zenturi Program Checker (ProgramChecker) Pro allows remote attackers to execute arbitrary code via a long argument to the Fill method. NOTE: this is probably a different issue than CVE-2007-2987.

Exploits (1)

exploitdb WORKING POC VERIFIED
by callAX · htmlremotewindows
https://www.exploit-db.com/exploits/4170

This exploit leverages a stack-based buffer overflow in the `Fill` method of `sasatl.dll` (v1.5.0.531) via JavaScript heap spraying to achieve remote code execution. The payload is delivered through an ActiveX control (CLSID: 7D6B5B29-FC7E-11D1-9288-00104B885781) and targets Internet Explorer on Windows XP/Vista.

Classification
Working Poc 95%
Attack Type
Rce
Complexity
Moderate
Reliability
Reliable
Target: Program Checker Pro (sasatl.dll v1.5.0.531)
No auth needed
Prerequisites: Victim must visit a malicious webpage using Internet Explorer · sasatl.dll must be registered and vulnerable version present
devstral-2 · analyzed Feb 16, 2026 Full analysis →

References (4)

Core 4
Core References
Third Party Advisory, VDB Entry vdb-entry x_refsource_osvdb
http://osvdb.org/37707
Exploit, Third Party Advisory exploit x_refsource_exploit-db
http://www.exploit-db.com/exploits/4170
Third Party Advisory mailing-list x_refsource_fulldisc
http://archives.neohapsis.com/archives/fulldisclosure/2007-07/0180.html
Exploit vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/24848

Scores

EPSS 0.0405
EPSS Percentile 89.3%

Details

Status published
Products (1)
zenturi/zenturi_programchecker 1.5.531
Published Jul 11, 2007
Tracked Since Feb 18, 2026