CVSS2
Attack Vector
NETWORK
Attack Complexity
MEDIUM
Authentication
NONE
Confidentiality Impact
COMPLETE
Integrity Impact
COMPLETE
Availability Impact
COMPLETE
AV:N/AC:M/Au:N/C:C/I:C/A:C
AI Score
Confidence
Low
EPSS
Percentile
99.1%
Unspecified vulnerability in Microsoft Internet Explorer 7 on Windows XP SP2, Windows Server 2003 SP1 or SP2, or Windows Vista allows remote attackers to execute arbitrary code via crafted HTML objects, which results in memory corruption, aka the first of two “HTML Objects Memory Corruption Vulnerabilities” and a different issue than CVE-2007-0947.
Vendor | Product | Version | CPE |
---|---|---|---|
microsoft | windows_xp | * | cpe:2.3:o:microsoft:windows_xp:*:sp2:*:*:*:*:*:* |
microsoft | internet_explorer | 7.0 | cpe:2.3:a:microsoft:internet_explorer:7.0:*:*:*:*:*:*:* |
microsoft | windows_2003_server | sp1 | cpe:2.3:o:microsoft:windows_2003_server:sp1:*:*:*:*:*:*:* |
microsoft | windows_2003_server | sp2 | cpe:2.3:o:microsoft:windows_2003_server:sp2:*:*:*:*:*:*:* |
microsoft | windows_vista | * | cpe:2.3:o:microsoft:windows_vista:*:*:*:*:*:*:*:* |
secunia.com/advisories/23769
www.osvdb.org/34402
www.securityfocus.com/archive/1/468871/100/200/threaded
www.securityfocus.com/bid/23770
www.securitytracker.com/id?1018019
www.us-cert.gov/cas/techalerts/TA07-128A.html
www.vupen.com/english/advisories/2007/1712
docs.microsoft.com/en-us/security-updates/securitybulletins/2007/ms07-027
exchange.xforce.ibmcloud.com/vulnerabilities/33255
oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A1441