{"api_version":"1","generated_at":"2026-07-23T10:39:57+00:00","cve":"CVE-2007-1891","urls":{"html":"https://cve.report/CVE-2007-1891","api":"https://cve.report/api/cve/CVE-2007-1891.json","docs":"https://cve.report/api","cve_org":"https://www.cve.org/CVERecord?id=CVE-2007-1891","nvd":"https://nvd.nist.gov/vuln/detail/CVE-2007-1891"},"summary":{"title":"CVE-2007-1891","description":"Stack-based buffer overflow in the GetPrivateProfileSectionW function in Akamai Technologies Download Manager ActiveX Control (DownloadManagerV2.ocx) after 2.0.4.4 but before 2.2.1.0 allows remote attackers to execute arbitrary code, related to misinterpretation of the nSize parameter as a byte count instead of a wide character count.","state":"PUBLISHED","assigner":"mitre","published_at":"2007-04-18 03:19:00","updated_at":"2026-04-23 00:35:47"},"problem_types":["NVD-CWE-Other","n/a"],"metrics":[{"version":"2.0","source":"nvd@nist.gov","type":"Primary","score":"9.3","severity":"","vector":"AV:N/AC:M/Au:N/C:C/I:C/A:C","data":{"version":"2.0","vectorString":"AV:N/AC:M/Au:N/C:C/I:C/A:C","baseScore":9.3,"accessVector":"NETWORK","accessComplexity":"MEDIUM","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"}}],"references":[{"url":"http://secunia.com/advisories/24900","name":"http://secunia.com/advisories/24900","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"Akamai Download Manager ActiveX Control Buffer Overflow Vulnerabilities - Advisories - Secunia","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://www.securityfocus.com/archive/1/465908/100/0/threaded","name":"http://www.securityfocus.com/archive/1/465908/100/0/threaded","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"SecurityFocus","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://www.kb.cert.org/vuls/id/120241","name":"http://www.kb.cert.org/vuls/id/120241","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["US Government Resource"],"title":"VU#120241 - Akamai Download Manager ActiveX control buffer overflow","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://www.securitytracker.com/id?1017925","name":"http://www.securitytracker.com/id?1017925","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"Akamai Download Manager ActiveX Control Buffer Overflow Lets Remote Users Execute Arbitrary Code - SecurityTracker","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://www.securityfocus.com/bid/23522","name":"http://www.securityfocus.com/bid/23522","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"Akamai Download Manager ActiveX Control Multiple Buffer Overflow Vulnerabilities","mime":"text/html","httpstatus":"200","archivestatus":"0"},{"url":"http://labs.idefense.com/intelligence/vulnerabilities/display.php?id=514","name":"http://labs.idefense.com/intelligence/vulnerabilities/display.php?id=514","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Patch","Vendor Advisory"],"title":"","mime":"text/html","httpstatus":"-1","archivestatus":"200"},{"url":"http://www.vupen.com/english/advisories/2007/1415","name":"http://www.vupen.com/english/advisories/2007/1415","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"Webmail : Solution de messagerie professionnelle - OVHcloud- OVH","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://www.osvdb.org/34323","name":"http://www.osvdb.org/34323","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"","mime":"","httpstatus":"-1","archivestatus":"0"},{"url":"https://www.cve.org/CVERecord?id=CVE-2007-1891","name":"CVE Program record","refsource":"CVE.ORG","tags":["canonical"]},{"url":"https://nvd.nist.gov/vuln/detail/CVE-2007-1891","name":"NVD vulnerability detail","refsource":"NVD","tags":["canonical","analysis"]}],"affected":[{"source":"CNA","vendor":"n/a","product":"n/a","version":"affected n/a","platforms":[]}],"timeline":[],"solutions":[],"workarounds":[],"exploits":[],"credits":[],"nvd_cpes":[{"cve_year":"2007","cve_id":"1891","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"akamai_technologies","cpe5":"download_manager","cpe6":"2.2.0.0","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"}],"vendor_comments":[],"enrichments":{"kev":null,"epss":null,"legacy_qids":[]},"source_records":{"cve_program":{"containers":{"adp":[{"providerMetadata":{"dateUpdated":"2024-08-07T13:13:41.824Z","orgId":"af854a3a-2127-422b-91ae-364da2661108","shortName":"CVE"},"references":[{"name":"20070416 Akamai Download Manager ActiveX Stack Buffer Overflow Vulnerability","tags":["third-party-advisory","x_refsource_IDEFENSE","x_transferred"],"url":"http://labs.idefense.com/intelligence/vulnerabilities/display.php?id=514"},{"name":"34323","tags":["vdb-entry","x_refsource_OSVDB","x_transferred"],"url":"http://www.osvdb.org/34323"},{"name":"20070416 Akamai Technologies Security Advisory 2007-0001","tags":["mailing-list","x_refsource_BUGTRAQ","x_transferred"],"url":"http://www.securityfocus.com/archive/1/465908/100/0/threaded"},{"name":"24900","tags":["third-party-advisory","x_refsource_SECUNIA","x_transferred"],"url":"http://secunia.com/advisories/24900"},{"name":"1017925","tags":["vdb-entry","x_refsource_SECTRACK","x_transferred"],"url":"http://www.securitytracker.com/id?1017925"},{"name":"VU#120241","tags":["third-party-advisory","x_refsource_CERT-VN","x_transferred"],"url":"http://www.kb.cert.org/vuls/id/120241"},{"name":"ADV-2007-1415","tags":["vdb-entry","x_refsource_VUPEN","x_transferred"],"url":"http://www.vupen.com/english/advisories/2007/1415"},{"name":"23522","tags":["vdb-entry","x_refsource_BID","x_transferred"],"url":"http://www.securityfocus.com/bid/23522"}],"title":"CVE Program Container"}],"cna":{"affected":[{"product":"n/a","vendor":"n/a","versions":[{"status":"affected","version":"n/a"}]}],"datePublic":"2007-04-16T00:00:00.000Z","descriptions":[{"lang":"en","value":"Stack-based buffer overflow in the GetPrivateProfileSectionW function in Akamai Technologies Download Manager ActiveX Control (DownloadManagerV2.ocx) after 2.0.4.4 but before 2.2.1.0 allows remote attackers to execute arbitrary code, related to misinterpretation of the nSize parameter as a byte count instead of a wide character count."}],"problemTypes":[{"descriptions":[{"description":"n/a","lang":"en","type":"text"}]}],"providerMetadata":{"dateUpdated":"2018-10-16T14:57:01.000Z","orgId":"8254265b-2729-46b6-b9e3-3dfca2d5bfca","shortName":"mitre"},"references":[{"name":"20070416 Akamai Download Manager ActiveX Stack Buffer Overflow Vulnerability","tags":["third-party-advisory","x_refsource_IDEFENSE"],"url":"http://labs.idefense.com/intelligence/vulnerabilities/display.php?id=514"},{"name":"34323","tags":["vdb-entry","x_refsource_OSVDB"],"url":"http://www.osvdb.org/34323"},{"name":"20070416 Akamai Technologies Security Advisory 2007-0001","tags":["mailing-list","x_refsource_BUGTRAQ"],"url":"http://www.securityfocus.com/archive/1/465908/100/0/threaded"},{"name":"24900","tags":["third-party-advisory","x_refsource_SECUNIA"],"url":"http://secunia.com/advisories/24900"},{"name":"1017925","tags":["vdb-entry","x_refsource_SECTRACK"],"url":"http://www.securitytracker.com/id?1017925"},{"name":"VU#120241","tags":["third-party-advisory","x_refsource_CERT-VN"],"url":"http://www.kb.cert.org/vuls/id/120241"},{"name":"ADV-2007-1415","tags":["vdb-entry","x_refsource_VUPEN"],"url":"http://www.vupen.com/english/advisories/2007/1415"},{"name":"23522","tags":["vdb-entry","x_refsource_BID"],"url":"http://www.securityfocus.com/bid/23522"}],"x_legacyV4Record":{"CVE_data_meta":{"ASSIGNER":"cve@mitre.org","ID":"CVE-2007-1891","STATE":"PUBLIC"},"affects":{"vendor":{"vendor_data":[{"product":{"product_data":[{"product_name":"n/a","version":{"version_data":[{"version_value":"n/a"}]}}]},"vendor_name":"n/a"}]}},"data_format":"MITRE","data_type":"CVE","data_version":"4.0","description":{"description_data":[{"lang":"eng","value":"Stack-based buffer overflow in the GetPrivateProfileSectionW function in Akamai Technologies Download Manager ActiveX Control (DownloadManagerV2.ocx) after 2.0.4.4 but before 2.2.1.0 allows remote attackers to execute arbitrary code, related to misinterpretation of the nSize parameter as a byte count instead of a wide character count."}]},"problemtype":{"problemtype_data":[{"description":[{"lang":"eng","value":"n/a"}]}]},"references":{"reference_data":[{"name":"20070416 Akamai Download Manager ActiveX Stack Buffer Overflow Vulnerability","refsource":"IDEFENSE","url":"http://labs.idefense.com/intelligence/vulnerabilities/display.php?id=514"},{"name":"34323","refsource":"OSVDB","url":"http://www.osvdb.org/34323"},{"name":"20070416 Akamai Technologies Security Advisory 2007-0001","refsource":"BUGTRAQ","url":"http://www.securityfocus.com/archive/1/465908/100/0/threaded"},{"name":"24900","refsource":"SECUNIA","url":"http://secunia.com/advisories/24900"},{"name":"1017925","refsource":"SECTRACK","url":"http://www.securitytracker.com/id?1017925"},{"name":"VU#120241","refsource":"CERT-VN","url":"http://www.kb.cert.org/vuls/id/120241"},{"name":"ADV-2007-1415","refsource":"VUPEN","url":"http://www.vupen.com/english/advisories/2007/1415"},{"name":"23522","refsource":"BID","url":"http://www.securityfocus.com/bid/23522"}]}}}},"cveMetadata":{"assignerOrgId":"8254265b-2729-46b6-b9e3-3dfca2d5bfca","assignerShortName":"mitre","cveId":"CVE-2007-1891","datePublished":"2007-04-18T02:20:00.000Z","dateReserved":"2007-04-06T00:00:00.000Z","dateUpdated":"2024-08-07T13:13:41.824Z","state":"PUBLISHED"},"dataType":"CVE_RECORD","dataVersion":"5.1"},"nvd":{"publishedDate":"2007-04-18 03:19:00","lastModifiedDate":"2026-04-23 00:35:47","problem_types":["NVD-CWE-Other","n/a"],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:M/Au:N/C:C/I:C/A:C","baseScore":9.3,"accessVector":"NETWORK","accessComplexity":"MEDIUM","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":8.6,"impactScore":10,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:akamai_technologies:download_manager:2.2.0.0:*:*:*:*:*:*:*","matchCriteriaId":"3CEC0560-A48B-4904-9A0F-D43098C62A8E"}]}]}]},"legacy_mitre":{"record":{"CveYear":"2007","CveId":"1891","Ordinal":"1","Title":"CVE-2007-1891","CVE":"CVE-2007-1891","Year":"2007"},"notes":[{"CveYear":"2007","CveId":"1891","Ordinal":"1","NoteData":"Stack-based buffer overflow in the GetPrivateProfileSectionW function in Akamai Technologies Download Manager ActiveX Control (DownloadManagerV2.ocx) after 2.0.4.4 but before 2.2.1.0 allows remote attackers to execute arbitrary code, related to misinterpretation of the nSize parameter as a byte count instead of a wide character count.","Type":"Description","Title":"CVE-2007-1891"},{"CveYear":"2007","CveId":"1891","Ordinal":"2","NoteData":"2007-04-17","Type":"Other","Title":"Published"},{"CveYear":"2007","CveId":"1891","Ordinal":"3","NoteData":"2018-10-16","Type":"Other","Title":"Modified"}]}}}