CVE-2007-2584 EXPLOIT
10.0
HIGH · CVSS 2.0 · EPSS 9.7% (pctl 95)
Patch early
A public exploit exists.
Description
Buffer overflow in the IsOldAppInstalled function in the McSubMgr.McSubMgr Subscription Manager ActiveX control (MCSUBMGR.DLL) in McAfee SecurityCenter before 6.0.25 and 7.x before 7.2.147 allows remote attackers to execute arbitrary code via a crafted argument.
Scoring
| CVSS | 10.0 (HIGH, v2.0) |
|---|---|
| Vector | AV:N/AC:L/Au:N/C:C/I:C/A:C |
| EPSS | 9.74% — more likely to be exploited than 95% of all CVEs |
| On CISA KEV | no |
| Public exploit | yes |
| Published | 2007-05-10 |
| Last modified | 2026-06-16 |
Affected (3)
| Vendor | Product |
|---|---|
| mcafee | security center |
| mcafee | securitycenter agent |
| mcafee | virusscan |
Public exploits
| Source | Title | Date |
|---|---|---|
| exploit-db | McAfee Security Center IsOldAppInstalled - ActiveX Buffer Overflow | 2007-05-10 |
References
- http://labs.idefense.com/intelligence/vulnerabilities/display.php?id=528
- http://osvdb.org/35874
- http://secunia.com/advisories/25173
- http://ts.mcafeehelp.com/faq3.asp?docid=419189
- http://www.securityfocus.com/bid/23888
- http://www.securityfocus.com/bid/23909
- http://www.securitytracker.com/id?1018028
- http://www.vupen.com/english/advisories/2007/1717
- https://exchange.xforce.ibmcloud.com/vulnerabilities/34179
- http://labs.idefense.com/intelligence/vulnerabilities/display.php?id=528
- http://osvdb.org/35874
- http://secunia.com/advisories/25173
- http://ts.mcafeehelp.com/faq3.asp?docid=419189
- http://www.securityfocus.com/bid/23888
- http://www.securityfocus.com/bid/23909
- http://www.securitytracker.com/id?1018028
- http://www.vupen.com/english/advisories/2007/1717
- https://exchange.xforce.ibmcloud.com/vulnerabilities/34179
→ the Explorer · watch your stack · NVD