peter bassill · operator
$ cve CVE-2007-5217 JSON

CVE-2007-5217 EXPLOIT

6.8
MEDIUM · CVSS 2.0 · EPSS 30% (pctl 98)

Patch early

A public exploit exists.

Description

Stack-based buffer overflow in the ADM4 ActiveX control in adm4.dll in Altnet Download Manager 4.0.0.6, as used in (1) Kazaa 3.2.7 and (2) Grokster, allows remote attackers to execute arbitrary code via a long argument to the Install method. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.

Scoring

CVSS6.8 (MEDIUM, v2.0)
VectorAV:N/AC:M/Au:N/C:P/I:P/A:P
EPSS29.99% — more likely to be exploited than 98% of all CVEs
WeaknessCWE-119
On CISA KEVno
Public exploityes
Published2007-10-05
Last modified2026-06-16

Affected (3)

VendorProduct
altnetaltnet download manager
grokstergrokster
kazaakazaa media desktop

Public exploits

References

→ the Explorer  ·  watch your stack  ·  NVD