{"api_version":"1","generated_at":"2026-07-23T05:40:05+00:00","cve":"CVE-2007-2987","urls":{"html":"https://cve.report/CVE-2007-2987","api":"https://cve.report/api/cve/CVE-2007-2987.json","docs":"https://cve.report/api","cve_org":"https://www.cve.org/CVERecord?id=CVE-2007-2987","nvd":"https://nvd.nist.gov/vuln/detail/CVE-2007-2987"},"summary":{"title":"CVE-2007-2987","description":"Multiple buffer overflows in certain ActiveX controls in sasatl.dll in Zenturi ProgramChecker allow remote attackers to execute arbitrary code via unspecified vectors, possibly involving the (1) DebugMsgLog or (2) DoFileProperties methods.","state":"PUBLISHED","assigner":"mitre","published_at":"2007-06-01 10:30:00","updated_at":"2026-04-23 00:35:47"},"problem_types":["CWE-119","n/a"],"metrics":[{"version":"2.0","source":"nvd@nist.gov","type":"Primary","score":"9.3","severity":"","vector":"AV:N/AC:M/Au:N/C:C/I:C/A:C","data":{"version":"2.0","vectorString":"AV:N/AC:M/Au:N/C:C/I:C/A:C","baseScore":9.3,"accessVector":"NETWORK","accessComplexity":"MEDIUM","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"}}],"references":[{"url":"http://osvdb.org/36715","name":"http://osvdb.org/36715","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"","mime":"","httpstatus":"-1","archivestatus":"0"},{"url":"http://www.vupen.com/english/advisories/2007/1977","name":"http://www.vupen.com/english/advisories/2007/1977","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"],"title":"Webmail : Solution de messagerie professionnelle - OVHcloud- OVH","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://www.securityfocus.com/bid/24274","name":"http://www.securityfocus.com/bid/24274","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"Zenturi ProgramChecker ActiveX Control DebugMsgLog Method Buffer Overflow Vulnerability","mime":"text/html","httpstatus":"200","archivestatus":"0"},{"url":"http://secunia.com/advisories/25473","name":"http://secunia.com/advisories/25473","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"],"title":"Zenturi ProgramChecker ActiveX Components ActiveX Controls Buffer Overflows - Advisories - Secunia","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://www.securityfocus.com/bid/24217","name":"http://www.securityfocus.com/bid/24217","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"Zenturi ProgramChecker SASATL.DLL ActiveX Control Multiple Buffer Overflow Vulnerabilities","mime":"text/html","httpstatus":"200","archivestatus":"0"},{"url":"http://www.kb.cert.org/vuls/id/603529","name":"http://www.kb.cert.org/vuls/id/603529","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["US Government Resource"],"title":"VU#603529 - Zenturi ProgramChecker ActiveX buffer overflow vulnerabilities","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"https://www.cve.org/CVERecord?id=CVE-2007-2987","name":"CVE Program record","refsource":"CVE.ORG","tags":["canonical"]},{"url":"https://nvd.nist.gov/vuln/detail/CVE-2007-2987","name":"NVD vulnerability detail","refsource":"NVD","tags":["canonical","analysis"]}],"affected":[{"source":"CNA","vendor":"n/a","product":"n/a","version":"affected n/a","platforms":[]}],"timeline":[],"solutions":[],"workarounds":[],"exploits":[],"credits":[],"nvd_cpes":[{"cve_year":"2007","cve_id":"2987","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"zenturi","cpe5":"zenturi_programchecker","cpe6":"*","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"}],"vendor_comments":[],"enrichments":{"kev":null,"epss":null,"legacy_qids":[]},"source_records":{"cve_program":{"containers":{"adp":[{"providerMetadata":{"dateUpdated":"2024-08-07T13:57:54.904Z","orgId":"af854a3a-2127-422b-91ae-364da2661108","shortName":"CVE"},"references":[{"name":"24217","tags":["vdb-entry","x_refsource_BID","x_transferred"],"url":"http://www.securityfocus.com/bid/24217"},{"name":"36715","tags":["vdb-entry","x_refsource_OSVDB","x_transferred"],"url":"http://osvdb.org/36715"},{"name":"24274","tags":["vdb-entry","x_refsource_BID","x_transferred"],"url":"http://www.securityfocus.com/bid/24274"},{"name":"ADV-2007-1977","tags":["vdb-entry","x_refsource_VUPEN","x_transferred"],"url":"http://www.vupen.com/english/advisories/2007/1977"},{"name":"VU#603529","tags":["third-party-advisory","x_refsource_CERT-VN","x_transferred"],"url":"http://www.kb.cert.org/vuls/id/603529"},{"name":"25473","tags":["third-party-advisory","x_refsource_SECUNIA","x_transferred"],"url":"http://secunia.com/advisories/25473"}],"title":"CVE Program Container"}],"cna":{"affected":[{"product":"n/a","vendor":"n/a","versions":[{"status":"affected","version":"n/a"}]}],"datePublic":"2007-05-29T00:00:00.000Z","descriptions":[{"lang":"en","value":"Multiple buffer overflows in certain ActiveX controls in sasatl.dll in Zenturi ProgramChecker allow remote attackers to execute arbitrary code via unspecified vectors, possibly involving the (1) DebugMsgLog or (2) DoFileProperties methods."}],"problemTypes":[{"descriptions":[{"description":"n/a","lang":"en","type":"text"}]}],"providerMetadata":{"dateUpdated":"2008-11-15T10:00:00.000Z","orgId":"8254265b-2729-46b6-b9e3-3dfca2d5bfca","shortName":"mitre"},"references":[{"name":"24217","tags":["vdb-entry","x_refsource_BID"],"url":"http://www.securityfocus.com/bid/24217"},{"name":"36715","tags":["vdb-entry","x_refsource_OSVDB"],"url":"http://osvdb.org/36715"},{"name":"24274","tags":["vdb-entry","x_refsource_BID"],"url":"http://www.securityfocus.com/bid/24274"},{"name":"ADV-2007-1977","tags":["vdb-entry","x_refsource_VUPEN"],"url":"http://www.vupen.com/english/advisories/2007/1977"},{"name":"VU#603529","tags":["third-party-advisory","x_refsource_CERT-VN"],"url":"http://www.kb.cert.org/vuls/id/603529"},{"name":"25473","tags":["third-party-advisory","x_refsource_SECUNIA"],"url":"http://secunia.com/advisories/25473"}],"x_legacyV4Record":{"CVE_data_meta":{"ASSIGNER":"cve@mitre.org","ID":"CVE-2007-2987","STATE":"PUBLIC"},"affects":{"vendor":{"vendor_data":[{"product":{"product_data":[{"product_name":"n/a","version":{"version_data":[{"version_value":"n/a"}]}}]},"vendor_name":"n/a"}]}},"data_format":"MITRE","data_type":"CVE","data_version":"4.0","description":{"description_data":[{"lang":"eng","value":"Multiple buffer overflows in certain ActiveX controls in sasatl.dll in Zenturi ProgramChecker allow remote attackers to execute arbitrary code via unspecified vectors, possibly involving the (1) DebugMsgLog or (2) DoFileProperties methods."}]},"problemtype":{"problemtype_data":[{"description":[{"lang":"eng","value":"n/a"}]}]},"references":{"reference_data":[{"name":"24217","refsource":"BID","url":"http://www.securityfocus.com/bid/24217"},{"name":"36715","refsource":"OSVDB","url":"http://osvdb.org/36715"},{"name":"24274","refsource":"BID","url":"http://www.securityfocus.com/bid/24274"},{"name":"ADV-2007-1977","refsource":"VUPEN","url":"http://www.vupen.com/english/advisories/2007/1977"},{"name":"VU#603529","refsource":"CERT-VN","url":"http://www.kb.cert.org/vuls/id/603529"},{"name":"25473","refsource":"SECUNIA","url":"http://secunia.com/advisories/25473"}]}}}},"cveMetadata":{"assignerOrgId":"8254265b-2729-46b6-b9e3-3dfca2d5bfca","assignerShortName":"mitre","cveId":"CVE-2007-2987","datePublished":"2007-06-01T10:00:00.000Z","dateReserved":"2007-05-31T00:00:00.000Z","dateUpdated":"2024-08-07T13:57:54.904Z","state":"PUBLISHED"},"dataType":"CVE_RECORD","dataVersion":"5.1"},"nvd":{"publishedDate":"2007-06-01 10:30:00","lastModifiedDate":"2026-04-23 00:35:47","problem_types":["CWE-119","n/a"],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:M/Au:N/C:C/I:C/A:C","baseScore":9.3,"accessVector":"NETWORK","accessComplexity":"MEDIUM","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":8.6,"impactScore":10,"acInsufInfo":false,"obtainAllPrivilege":true,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":true}]},"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:zenturi:zenturi_programchecker:*:*:*:*:*:*:*:*","matchCriteriaId":"9628881E-9FAF-48DC-BC73-B1E4BBEF5ADC"}]}]}]},"legacy_mitre":{"record":{"CveYear":"2007","CveId":"2987","Ordinal":"1","Title":"CVE-2007-2987","CVE":"CVE-2007-2987","Year":"2007"},"notes":[{"CveYear":"2007","CveId":"2987","Ordinal":"1","NoteData":"Multiple buffer overflows in certain ActiveX controls in sasatl.dll in Zenturi ProgramChecker allow remote attackers to execute arbitrary code via unspecified vectors, possibly involving the (1) DebugMsgLog or (2) DoFileProperties methods.","Type":"Description","Title":"CVE-2007-2987"},{"CveYear":"2007","CveId":"2987","Ordinal":"2","NoteData":"2007-06-01","Type":"Other","Title":"Published"},{"CveYear":"2007","CveId":"2987","Ordinal":"3","NoteData":"2008-11-15","Type":"Other","Title":"Modified"}]}}}