CVE-2007-5607
HP Instant Support < 1.0.0.23 - Remote Code Execution via RegistryString Function Buffer Overflow
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2007-5607. PoCs published by Dennis Rand.
AI-analyzed exploit summary This exploit targets a buffer overflow vulnerability in HP Instant Support's HPISDataManager.dll ActiveX control. It uses VBScript to trigger the vulnerability by passing an overly long string to the RegistryString property, potentially leading to arbitrary code execution.
Description
Buffer overflow in the RegistryString function in the HPISDataManagerLib.Datamgr ActiveX control in HPISDataManager.dll in HP Instant Support before 1.0.0.24 allows remote attackers to execute arbitrary code via a long first argument, a different vulnerability than CVE-2007-5604, CVE-2007-5605, and CVE-2007-5606.
Exploits (1)
This exploit targets a buffer overflow vulnerability in HP Instant Support's HPISDataManager.dll ActiveX control. It uses VBScript to trigger the vulnerability by passing an overly long string to the RegistryString property, potentially leading to arbitrary code execution.