{"api_version":"1","generated_at":"2026-07-23T07:34:06+00:00","cve":"CVE-2007-2787","urls":{"html":"https://cve.report/CVE-2007-2787","api":"https://cve.report/api/cve/CVE-2007-2787.json","docs":"https://cve.report/api","cve_org":"https://www.cve.org/CVERecord?id=CVE-2007-2787","nvd":"https://nvd.nist.gov/vuln/detail/CVE-2007-2787"},"summary":{"title":"CVE-2007-2787","description":"Stack-based buffer overflow in the BrowseDir function in the (1) lttmb14E.ocx or (2) LTRTM14e.DLL ActiveX control in LeadTools Raster Thumbnail Object Library 14.5.0.44 allows remote attackers to execute arbitrary code via a long argument.","state":"PUBLISHED","assigner":"mitre","published_at":"2007-05-21 23:30:00","updated_at":"2026-04-23 00:35:47"},"problem_types":["NVD-CWE-Other","n/a"],"metrics":[{"version":"2.0","source":"nvd@nist.gov","type":"Primary","score":"7.5","severity":"","vector":"AV:N/AC:L/Au:N/C:P/I:P/A:P","data":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"}}],"references":[{"url":"http://www.securityfocus.com/bid/24057","name":"http://www.securityfocus.com/bid/24057","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"LeadTools Raster Object Library LTRTM14e.DLL ActiveX Control Buffer Overflow Vulnerability","mime":"text/html","httpstatus":"200","archivestatus":"0"},{"url":"http://secunia.com/advisories/25376","name":"http://secunia.com/advisories/25376","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"LEADTOOLS LEAD Thumbnail Browser Control ActiveX Control Buffer Overflow - Advisories - Secunia","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://www.shinnai.altervista.org/moaxb/20070520/leadrastertxt.html","name":"http://www.shinnai.altervista.org/moaxb/20070520/leadrastertxt.html","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit"],"title":"shinnai.altervista.org","mime":"text/html","httpstatus":"404","archivestatus":"404"},{"url":"https://www.exploit-db.com/exploits/3951","name":"https://www.exploit-db.com/exploits/3951","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"LeadTools Thumbnail Browser Control - 'lttmb14E.ocx' Remote Buffer Overflow - Windows remote Exploit","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://osvdb.org/36029","name":"http://osvdb.org/36029","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"","mime":"","httpstatus":"-1","archivestatus":"0"},{"url":"http://moaxb.blogspot.com/2007/05/moaxb-19-leadtools-thumbnail-browser.html","name":"http://moaxb.blogspot.com/2007/05/moaxb-19-leadtools-thumbnail-browser.html","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"MoAxB - Month of ActiveX Bug: MoAxB #19: LeadTools Thumbnail Browser Control (lttmb14E.ocx v. 14.5.0.44) Remote Stack-Based Buffer Overflow","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://osvdb.org/36028","name":"http://osvdb.org/36028","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"","mime":"","httpstatus":"-1","archivestatus":"0"},{"url":"https://www.exploit-db.com/exploits/3952","name":"https://www.exploit-db.com/exploits/3952","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"LeadTools Raster Thumbnail Object Library - 'LTRTM14e.dll' Remote Buffer Overflow - Windows remote Exploit","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://www.shinnai.altervista.org/moaxb/20070519/lademthumbtxt.html","name":"http://www.shinnai.altervista.org/moaxb/20070519/lademthumbtxt.html","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit"],"title":"shinnai.altervista.org","mime":"text/html","httpstatus":"404","archivestatus":"404"},{"url":"http://secunia.com/advisories/25331","name":"http://secunia.com/advisories/25331","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"LEADTOOLS LEAD Raster Thumbnail Object Library ActiveX Control Buffer Overflow - Advisories - Secunia","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://www.securityfocus.com/bid/24053","name":"http://www.securityfocus.com/bid/24053","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"LeadTools Thumbnail Browser ActiveX Control LTTMB14E.OCX Buffer Overflow Vulnerability","mime":"text/html","httpstatus":"200","archivestatus":"0"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/34378","name":"https://exchange.xforce.ibmcloud.com/vulnerabilities/34378","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"IBM X-Force Exchange","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/34379","name":"https://exchange.xforce.ibmcloud.com/vulnerabilities/34379","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"IBM X-Force Exchange","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://moaxb.blogspot.com/2007/05/moaxb-20-leadtools-raster-thumbnail.html","name":"http://moaxb.blogspot.com/2007/05/moaxb-20-leadtools-raster-thumbnail.html","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"MoAxB - Month of ActiveX Bug: MoAxB #20: LeadTools Raster Thumbnail Object Library (LTRTM14e.DLL v. 14.5.0.44) Remote Stack-Based Buffer Overflow","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"https://www.cve.org/CVERecord?id=CVE-2007-2787","name":"CVE Program record","refsource":"CVE.ORG","tags":["canonical"]},{"url":"https://nvd.nist.gov/vuln/detail/CVE-2007-2787","name":"NVD vulnerability detail","refsource":"NVD","tags":["canonical","analysis"]}],"affected":[{"source":"CNA","vendor":"n/a","product":"n/a","version":"affected n/a","platforms":[]}],"timeline":[],"solutions":[],"workarounds":[],"exploits":[],"credits":[],"nvd_cpes":[{"cve_year":"2007","cve_id":"2787","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"lead_technologies","cpe5":"leadtools_raster_thumbnail_object_library","cpe6":"14.5.0.44","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"}],"vendor_comments":[],"enrichments":{"kev":null,"epss":null,"legacy_qids":[]},"source_records":{"cve_program":{"containers":{"adp":[{"providerMetadata":{"dateUpdated":"2024-08-07T13:49:57.513Z","orgId":"af854a3a-2127-422b-91ae-364da2661108","shortName":"CVE"},"references":[{"tags":["x_refsource_MISC","x_transferred"],"url":"http://moaxb.blogspot.com/2007/05/moaxb-20-leadtools-raster-thumbnail.html"},{"name":"36028","tags":["vdb-entry","x_refsource_OSVDB","x_transferred"],"url":"http://osvdb.org/36028"},{"name":"25331","tags":["third-party-advisory","x_refsource_SECUNIA","x_transferred"],"url":"http://secunia.com/advisories/25331"},{"tags":["x_refsource_MISC","x_transferred"],"url":"http://www.shinnai.altervista.org/moaxb/20070520/leadrastertxt.html"},{"name":"24057","tags":["vdb-entry","x_refsource_BID","x_transferred"],"url":"http://www.securityfocus.com/bid/24057"},{"tags":["x_refsource_MISC","x_transferred"],"url":"http://moaxb.blogspot.com/2007/05/moaxb-19-leadtools-thumbnail-browser.html"},{"tags":["x_refsource_MISC","x_transferred"],"url":"http://www.shinnai.altervista.org/moaxb/20070519/lademthumbtxt.html"},{"name":"leadtools-lttmb14e-bo(34379)","tags":["vdb-entry","x_refsource_XF","x_transferred"],"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/34379"},{"name":"36029","tags":["vdb-entry","x_refsource_OSVDB","x_transferred"],"url":"http://osvdb.org/36029"},{"name":"25376","tags":["third-party-advisory","x_refsource_SECUNIA","x_transferred"],"url":"http://secunia.com/advisories/25376"},{"name":"leadtools-ltrtm14e-bo(34378)","tags":["vdb-entry","x_refsource_XF","x_transferred"],"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/34378"},{"name":"24053","tags":["vdb-entry","x_refsource_BID","x_transferred"],"url":"http://www.securityfocus.com/bid/24053"},{"name":"3952","tags":["exploit","x_refsource_EXPLOIT-DB","x_transferred"],"url":"https://www.exploit-db.com/exploits/3952"},{"name":"3951","tags":["exploit","x_refsource_EXPLOIT-DB","x_transferred"],"url":"https://www.exploit-db.com/exploits/3951"}],"title":"CVE Program Container"}],"cna":{"affected":[{"product":"n/a","vendor":"n/a","versions":[{"status":"affected","version":"n/a"}]}],"datePublic":"2007-05-18T00:00:00.000Z","descriptions":[{"lang":"en","value":"Stack-based buffer overflow in the BrowseDir function in the (1) lttmb14E.ocx or (2) LTRTM14e.DLL ActiveX control in LeadTools Raster Thumbnail Object Library 14.5.0.44 allows remote attackers to execute arbitrary code via a long argument."}],"problemTypes":[{"descriptions":[{"description":"n/a","lang":"en","type":"text"}]}],"providerMetadata":{"dateUpdated":"2017-10-10T00:57:01.000Z","orgId":"8254265b-2729-46b6-b9e3-3dfca2d5bfca","shortName":"mitre"},"references":[{"tags":["x_refsource_MISC"],"url":"http://moaxb.blogspot.com/2007/05/moaxb-20-leadtools-raster-thumbnail.html"},{"name":"36028","tags":["vdb-entry","x_refsource_OSVDB"],"url":"http://osvdb.org/36028"},{"name":"25331","tags":["third-party-advisory","x_refsource_SECUNIA"],"url":"http://secunia.com/advisories/25331"},{"tags":["x_refsource_MISC"],"url":"http://www.shinnai.altervista.org/moaxb/20070520/leadrastertxt.html"},{"name":"24057","tags":["vdb-entry","x_refsource_BID"],"url":"http://www.securityfocus.com/bid/24057"},{"tags":["x_refsource_MISC"],"url":"http://moaxb.blogspot.com/2007/05/moaxb-19-leadtools-thumbnail-browser.html"},{"tags":["x_refsource_MISC"],"url":"http://www.shinnai.altervista.org/moaxb/20070519/lademthumbtxt.html"},{"name":"leadtools-lttmb14e-bo(34379)","tags":["vdb-entry","x_refsource_XF"],"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/34379"},{"name":"36029","tags":["vdb-entry","x_refsource_OSVDB"],"url":"http://osvdb.org/36029"},{"name":"25376","tags":["third-party-advisory","x_refsource_SECUNIA"],"url":"http://secunia.com/advisories/25376"},{"name":"leadtools-ltrtm14e-bo(34378)","tags":["vdb-entry","x_refsource_XF"],"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/34378"},{"name":"24053","tags":["vdb-entry","x_refsource_BID"],"url":"http://www.securityfocus.com/bid/24053"},{"name":"3952","tags":["exploit","x_refsource_EXPLOIT-DB"],"url":"https://www.exploit-db.com/exploits/3952"},{"name":"3951","tags":["exploit","x_refsource_EXPLOIT-DB"],"url":"https://www.exploit-db.com/exploits/3951"}],"x_legacyV4Record":{"CVE_data_meta":{"ASSIGNER":"cve@mitre.org","ID":"CVE-2007-2787","STATE":"PUBLIC"},"affects":{"vendor":{"vendor_data":[{"product":{"product_data":[{"product_name":"n/a","version":{"version_data":[{"version_value":"n/a"}]}}]},"vendor_name":"n/a"}]}},"data_format":"MITRE","data_type":"CVE","data_version":"4.0","description":{"description_data":[{"lang":"eng","value":"Stack-based buffer overflow in the BrowseDir function in the (1) lttmb14E.ocx or (2) LTRTM14e.DLL ActiveX control in LeadTools Raster Thumbnail Object Library 14.5.0.44 allows remote attackers to execute arbitrary code via a long argument."}]},"problemtype":{"problemtype_data":[{"description":[{"lang":"eng","value":"n/a"}]}]},"references":{"reference_data":[{"name":"http://moaxb.blogspot.com/2007/05/moaxb-20-leadtools-raster-thumbnail.html","refsource":"MISC","url":"http://moaxb.blogspot.com/2007/05/moaxb-20-leadtools-raster-thumbnail.html"},{"name":"36028","refsource":"OSVDB","url":"http://osvdb.org/36028"},{"name":"25331","refsource":"SECUNIA","url":"http://secunia.com/advisories/25331"},{"name":"http://www.shinnai.altervista.org/moaxb/20070520/leadrastertxt.html","refsource":"MISC","url":"http://www.shinnai.altervista.org/moaxb/20070520/leadrastertxt.html"},{"name":"24057","refsource":"BID","url":"http://www.securityfocus.com/bid/24057"},{"name":"http://moaxb.blogspot.com/2007/05/moaxb-19-leadtools-thumbnail-browser.html","refsource":"MISC","url":"http://moaxb.blogspot.com/2007/05/moaxb-19-leadtools-thumbnail-browser.html"},{"name":"http://www.shinnai.altervista.org/moaxb/20070519/lademthumbtxt.html","refsource":"MISC","url":"http://www.shinnai.altervista.org/moaxb/20070519/lademthumbtxt.html"},{"name":"leadtools-lttmb14e-bo(34379)","refsource":"XF","url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/34379"},{"name":"36029","refsource":"OSVDB","url":"http://osvdb.org/36029"},{"name":"25376","refsource":"SECUNIA","url":"http://secunia.com/advisories/25376"},{"name":"leadtools-ltrtm14e-bo(34378)","refsource":"XF","url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/34378"},{"name":"24053","refsource":"BID","url":"http://www.securityfocus.com/bid/24053"},{"name":"3952","refsource":"EXPLOIT-DB","url":"https://www.exploit-db.com/exploits/3952"},{"name":"3951","refsource":"EXPLOIT-DB","url":"https://www.exploit-db.com/exploits/3951"}]}}}},"cveMetadata":{"assignerOrgId":"8254265b-2729-46b6-b9e3-3dfca2d5bfca","assignerShortName":"mitre","cveId":"CVE-2007-2787","datePublished":"2007-05-21T23:00:00.000Z","dateReserved":"2007-05-21T00:00:00.000Z","dateUpdated":"2024-08-07T13:49:57.513Z","state":"PUBLISHED"},"dataType":"CVE_RECORD","dataVersion":"5.1"},"nvd":{"publishedDate":"2007-05-21 23:30:00","lastModifiedDate":"2026-04-23 00:35:47","problem_types":["NVD-CWE-Other","n/a"],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":true,"userInteractionRequired":false}]},"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:lead_technologies:leadtools_raster_thumbnail_object_library:14.5.0.44:*:*:*:*:*:*:*","matchCriteriaId":"1AE8E24A-3F26-41EA-B6EE-A095315B3AF8"}]}]}]},"legacy_mitre":{"record":{"CveYear":"2007","CveId":"2787","Ordinal":"1","Title":"CVE-2007-2787","CVE":"CVE-2007-2787","Year":"2007"},"notes":[{"CveYear":"2007","CveId":"2787","Ordinal":"1","NoteData":"Stack-based buffer overflow in the BrowseDir function in the (1) lttmb14E.ocx or (2) LTRTM14e.DLL ActiveX control in LeadTools Raster Thumbnail Object Library 14.5.0.44 allows remote attackers to execute arbitrary code via a long argument.","Type":"Description","Title":"CVE-2007-2787"},{"CveYear":"2007","CveId":"2787","Ordinal":"2","NoteData":"2007-05-21","Type":"Other","Title":"Published"},{"CveYear":"2007","CveId":"2787","Ordinal":"3","NoteData":"2017-10-09","Type":"Other","Title":"Modified"}]}}}