CVE-2007-4802

GlobalLink 2.7.0.8 - Remote Code Execution via glItemCom.dll or glitemflat.dll ActiveX Control

Title source: llm
STIX 2.1

Exploitation Summary

EIP tracks 2 public exploits for CVE-2007-4802. PoCs published by void.

AI-analyzed exploit summary This exploit targets a heap spray vulnerability in a specific ActiveX control (CLSID: 7D1425D4-E2FC-4A52-BDA9-B9DCAC5EF574) to achieve arbitrary code execution. The shellcode is designed to trigger a MessageBox as a proof-of-concept.

Description

Multiple heap-based buffer overflows in GlobalLink 2.7.0.8 allow remote attackers to execute arbitrary code via (1) a long eighth argument to the SetInfo method in a certain ActiveX control in glItemCom.dll or (2) a long second argument to the SetClientInfo method in a certain ActiveX control in glitemflat.dll.

Exploits (2)

exploitdb WORKING POC VERIFIED
by void · htmlremotewindows
https://www.exploit-db.com/exploits/4372

This exploit targets a heap spray vulnerability in a specific ActiveX control (CLSID: 7D1425D4-E2FC-4A52-BDA9-B9DCAC5EF574) to achieve arbitrary code execution. The shellcode is designed to trigger a MessageBox as a proof-of-concept.

Classification
Working Poc 95%
Attack Type
Rce
Complexity
Moderate
Reliability
Reliable
Target: ActiveX control (CLSID: 7D1425D4-E2FC-4A52-BDA9-B9DCAC5EF574)
No auth needed
Prerequisites: Victim must visit a malicious webpage · ActiveX control must be installed and vulnerable
devstral-2 · analyzed Feb 16, 2026 Full analysis →
exploitdb WORKING POC VERIFIED
by void · htmlremotewindows
https://www.exploit-db.com/exploits/4366

This exploit targets a heap spray vulnerability in the ActiveX control 'clsid:1C9B434A-0898-498A-B802-B00FA0962214' to achieve remote code execution by spraying the heap with shellcode and triggering the vulnerability via the 'SetInfo' method.

Classification
Working Poc 95%
Attack Type
Rce
Complexity
Moderate
Reliability
Reliable
Target: ActiveX control (clsid:1C9B434A-0898-498A-B802-B00FA0962214)
No auth needed
Prerequisites: Victim must visit a malicious webpage · ActiveX control must be installed and enabled
devstral-2 · analyzed Feb 16, 2026 Full analysis →

References (8)

Core 8
Core References
Third Party Advisory, VDB Entry vdb-entry x_refsource_osvdb
http://osvdb.org/45886
Exploit vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/25586
Third Party Advisory, VDB Entry vdb-entry x_refsource_xf
https://exchange.xforce.ibmcloud.com/vulnerabilities/36501
Exploit, Third Party Advisory exploit x_refsource_exploit-db
https://www.exploit-db.com/exploits/4366
Exploit vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/25565
Exploit, Third Party Advisory exploit x_refsource_exploit-db
https://www.exploit-db.com/exploits/4372
Third Party Advisory, VDB Entry vdb-entry x_refsource_xf
https://exchange.xforce.ibmcloud.com/vulnerabilities/36470
Third Party Advisory, VDB Entry vdb-entry x_refsource_osvdb
http://osvdb.org/45887

Scores

EPSS 0.0896
EPSS Percentile 94.6%

Details

CWE
CWE-119
Status published
Products (1)
ourgame.com/globallink 2.7.0.8
Published Sep 11, 2007
Tracked Since Feb 18, 2026