Description
Stack-based buffer overflow in the ADM4 ActiveX control in adm4.dll in Altnet Download Manager 4.0.0.6, as used in (1) Kazaa 3.2.7 and (2) Grokster, allows remote attackers to execute arbitrary code via a long argument to the Install method. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.
Exploits (2)
exploitdb
WORKING POC
VERIFIED
by Metasploit · rubyremotewindows
https://www.exploit-db.com/exploits/16496
metasploit
WORKING POC
NORMAL
by MC · rubypocwin
https://github.com/rapid7/metasploit-framework/blob/master/modules/exploits/windows/browser/kazaa_altnet_heap.rb
References (8)
Scores
EPSS
0.6570
EPSS Percentile
98.5%
Details
CWE
CWE-119
Status
published
Products (3)
altnet/altnet_download_manager
4.0.0.6
grokster/grokster
2.6
kazaa/kazaa_media_desktop
3.2.7
Published
Oct 05, 2007
Tracked Since
Feb 18, 2026