CVE-2007-4802
GlobalLink 2.7.0.8 - Remote Code Execution via glItemCom.dll or glitemflat.dll ActiveX Control
Title source: llmExploitation Summary
EIP tracks 2 public exploits for CVE-2007-4802. PoCs published by void.
AI-analyzed exploit summary This exploit targets a heap spray vulnerability in a specific ActiveX control (CLSID: 7D1425D4-E2FC-4A52-BDA9-B9DCAC5EF574) to achieve arbitrary code execution. The shellcode is designed to trigger a MessageBox as a proof-of-concept.
Description
Multiple heap-based buffer overflows in GlobalLink 2.7.0.8 allow remote attackers to execute arbitrary code via (1) a long eighth argument to the SetInfo method in a certain ActiveX control in glItemCom.dll or (2) a long second argument to the SetClientInfo method in a certain ActiveX control in glitemflat.dll.
Exploits (2)
This exploit targets a heap spray vulnerability in a specific ActiveX control (CLSID: 7D1425D4-E2FC-4A52-BDA9-B9DCAC5EF574) to achieve arbitrary code execution. The shellcode is designed to trigger a MessageBox as a proof-of-concept.
This exploit targets a heap spray vulnerability in the ActiveX control 'clsid:1C9B434A-0898-498A-B802-B00FA0962214' to achieve remote code execution by spraying the heap with shellcode and triggering the vulnerability via the 'SetInfo' method.