Unspecified vulnerability in the Win32 API on Microsoft Windows 2000, XP SP2, and Server 2003 SP1 and SP2 allows remote attackers to execute arbitrary code via certain parameters to an unspecified function.
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A1643
https://docs.microsoft.com/en-us/security-updates/securitybulletins/2007/ms07-035
http://www.vupen.com/english/advisories/2007/2155
http://www.us-cert.gov/cas/techalerts/TA07-163A.html
http://www.securitytracker.com/id?1018230
http://www.securityfocus.com/bid/24370
http://www.securityfocus.com/archive/1/471947/100/0/threaded
http://www.kb.cert.org/vuls/id/457281