CVE-2007-4145

BlueSkychat V2.V2Ctrl.1 <8.1.2.0 - Buffer Overflow

Title source: llm
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for CVE-2007-4145. PoCs published by Code Audit Labs.

AI-analyzed exploit summary This exploit targets a buffer overflow vulnerability in BlueSkyChat ActiveX control by passing an overly long string to the 'ConnecttoServer' method, potentially leading to arbitrary code execution in the context of Internet Explorer.

Description

Heap-based buffer overflow in the BlueSkychat (BlueSkyCat) ActiveX control (V2.V2Ctrl.1) in v2.ocx 8.1.2.0 and earlier allows remote attackers to execute arbitrary code via a long string in the second argument to the ConnecttoServer method.

Exploits (1)

exploitdb WORKING POC VERIFIED
by Code Audit Labs · htmlremotewindows
https://www.exploit-db.com/exploits/30441

This exploit targets a buffer overflow vulnerability in BlueSkyChat ActiveX control by passing an overly long string to the 'ConnecttoServer' method, potentially leading to arbitrary code execution in the context of Internet Explorer.

Classification
Working Poc 90%
Attack Type
Rce
Complexity
Trivial
Reliability
Theoretical
Target: BlueSkyChat ActiveX control 8.1.2.0
No auth needed
Prerequisites: Victim must visit a malicious webpage using Internet Explorer with the vulnerable ActiveX control installed
devstral-2 · analyzed Feb 16, 2026 Full analysis →

References (7)

Core 7
Core References
Third Party Advisory, VDB Entry mailing-list x_refsource_bugtraq
http://www.securityfocus.com/archive/1/475150/100/0/threaded
Third Party Advisory, VDB Entry vdb-entry x_refsource_xf
https://exchange.xforce.ibmcloud.com/vulnerabilities/35699
Exploit vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/25149
Mailing List mailing-list x_refsource_fulldisc
http://lists.grok.org.uk/pipermail/full-disclosure/2007-July/064995.html
Various Sources x_refsource_misc
http://codeaudit.blogspot.com/
Third Party Advisory third-party-advisory x_refsource_sreason
http://securityreason.com/securityalert/2959

Scores

EPSS 0.0530
EPSS Percentile 91.5%

Details

Status published
Products (1)
bluesky/blueskychat < 8.1.2.0
Published Aug 03, 2007
Tracked Since Feb 18, 2026