CVE-2007-5217

Altnet Download Manager - Memory Corruption

Title source: rule
STIX 2.1

Description

Stack-based buffer overflow in the ADM4 ActiveX control in adm4.dll in Altnet Download Manager 4.0.0.6, as used in (1) Kazaa 3.2.7 and (2) Grokster, allows remote attackers to execute arbitrary code via a long argument to the Install method. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.

Exploits (2)

exploitdb WORKING POC VERIFIED
by Metasploit · rubyremotewindows
https://www.exploit-db.com/exploits/16496
metasploit WORKING POC NORMAL
by MC · rubypocwin
https://github.com/rapid7/metasploit-framework/blob/master/modules/exploits/windows/browser/kazaa_altnet_heap.rb

Scores

EPSS 0.6570
EPSS Percentile 98.5%

Details

CWE
CWE-119
Status published
Products (3)
altnet/altnet_download_manager 4.0.0.6
grokster/grokster 2.6
kazaa/kazaa_media_desktop 3.2.7
Published Oct 05, 2007
Tracked Since Feb 18, 2026