Lucene search

K
cve[email protected]CVE-2007-0515
HistoryJan 26, 2007 - 12:28 a.m.

CVE-2007-0515

2007-01-2600:28:00
web.nvd.nist.gov
41
cve-2007-0515
microsoft word
user-assisted
remote attackers
execute arbitrary code
denial of service
memory corruption
trojan.mdropper.w
trojan.mdropper.x

9.3 High

CVSS2

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:M/Au:N/C:C/I:C/A:C

7.3 High

AI Score

Confidence

Low

0.964 High

EPSS

Percentile

99.6%

Unspecified vulnerability in Microsoft Word allows user-assisted remote attackers to execute arbitrary code on Word 2000, and cause a denial of service on Word 2003, via unknown attack vectors that trigger memory corruption, as exploited by Trojan.Mdropper.W and later by Trojan.Mdropper.X, a different issue than CVE-2006-6456, CVE-2006-5994, and CVE-2006-6561.

Affected configurations

NVD
Node
microsoftofficeMatch2000sp3
OR
microsoftofficeMatch2003sp2
OR
microsoftofficeMatch2004mac
OR
microsoftofficeMatchxpsp3
OR
microsoftwordMatch2000
OR
microsoftwordMatch2002
OR
microsoftwordMatch2003
OR
microsoftword_viewerMatch2003
OR
microsoftworksMatch2004
OR
microsoftworksMatch2005
OR
microsoftworksMatch2006

References

9.3 High

CVSS2

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:M/Au:N/C:C/I:C/A:C

7.3 High

AI Score

Confidence

Low

0.964 High

EPSS

Percentile

99.6%