MS.Windows.Agent.Characters.Load.Buffer.Overflow

description-logoDescription

A remote code execution vulnerability has been identified in a Microsoft Agent ActiveX control, agentdpv.dll. The control does not properly handle specially crafted URLs, causing a buffer overflow which could allow a remote attacker to execute arbitrary code on an affected system. An attacker can exploit this by tricking a user into visiting a specially crafted web page.

affected-products-logoAffected Products

Microsoft Windows 2000 Service Pack 4

Impact logoImpact

Arbitrary code execution.

recomended-action-logoRecommended Actions

The vendor has released security bulletin MS07-051 to fix this issue.
http://www.microsoft.com/technet/security/Bulletin/MS07-051.mspx

Telemetry logoTelemetry

Coverage

IPS (Regular DB)
IPS (Extended DB)

Version Updates

Date Version Detail
2020-10-12 16.941 Name:MS.
Agent.
Characters.
Load.
Buffer.
Overflow:MS.
Windows.
Agent.
Characters.
Load.
Buffer.
Overflow