CVE-2007-4105
EXPLOITEDBaidu Soba Search Bar BaiduBar.dll ActiveX - Remote Code Execution
Title source: manualExploitation Summary
CVE-2007-4105 has been observed exploited in the wild (reported by VulnCheck KEV). EIP tracks 1 public exploit from researchers including cocoruder.
AI-analyzed exploit summary This exploit leverages a vulnerable ActiveX control in Baidu Soba to download and execute a remote file. The PoC uses the 'DloadDS' method to fetch and run an executable from a specified URL.
Description
A certain ActiveX control in BaiduBar.dll in Baidu Soba Search Bar 5.4 allows remote attackers to execute arbitrary code via a request containing "a link to download and a file to execute," possibly involving remote file inclusion.
Exploits (1)
This exploit leverages a vulnerable ActiveX control in Baidu Soba to download and execute a remote file. The PoC uses the 'DloadDS' method to fetch and run an executable from a specified URL.