Unrated severityNVD Advisory· Published Jul 15, 2007· Updated Apr 23, 2026
CVE-2007-2417
CVE-2007-2417
Description
Heap-based buffer overflow in _mprosrv.exe in Progress Software Progress 9.1E and OpenEdge 10.1x, as used by the RSA Authentication Manager 6.0 and 6.1, SecurID Appliance 2.0, ACE/Server 5.2, and possibly other products, allows remote attackers to execute arbitrary code via crafted packets. NOTE: this issue might overlap CVE-2007-3491.
Affected products
4cpe:2.3:a:progress:openedge:10.1a:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:progress:openedge:10.1a:*:*:*:*:*:*:*
- cpe:2.3:a:progress:openedge:10.1b:*:*:*:*:*:*:*
- cpe:2.3:a:progress:progress:9.1e:*:*:*:*:*:*:*
- cpe:2.3:a:rsa:ace_server:5.2:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
10- dvlabs.tippingpoint.com/advisory/TPTI-07-12nvdPatchVendor Advisory
- secunia.com/advisories/26058nvdPatchVendor Advisory
- secunia.com/advisories/26067nvdPatchVendor Advisory
- osvdb.org/37934nvd
- www.securityfocus.com/archive/1/473623/100/0/threadednvd
- www.securityfocus.com/bid/24675nvd
- www.securitytracker.com/idnvd
- www.vupen.com/english/advisories/2007/2530nvd
- www.vupen.com/english/advisories/2007/2531nvd
- exchange.xforce.ibmcloud.com/vulnerabilities/35385nvd
News mentions
0No linked articles in our index yet.