Lucene search

K
cveMicrosoftCVE-2007-0946
HistoryMay 08, 2007 - 11:19 p.m.

CVE-2007-0946

2007-05-0823:19:00
microsoft
web.nvd.nist.gov
116
cve-2007-0946
microsoft internet explorer
windows xp
windows server 2003
windows vista
remote code execution
memory corruption
html objects

CVSS2

9.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:M/Au:N/C:C/I:C/A:C

AI Score

7.1

Confidence

Low

EPSS

0.928

Percentile

99.1%

Unspecified vulnerability in Microsoft Internet Explorer 7 on Windows XP SP2, Windows Server 2003 SP1 or SP2, or Windows Vista allows remote attackers to execute arbitrary code via crafted HTML objects, which results in memory corruption, aka the first of two “HTML Objects Memory Corruption Vulnerabilities” and a different issue than CVE-2007-0947.

Affected configurations

Nvd
Node
microsoftwindows_xpsp2
AND
microsoftinternet_explorerMatch7.0
Node
microsoftwindows_2003_serverMatchsp1
AND
microsoftinternet_explorerMatch7.0
Node
microsoftwindows_2003_serverMatchsp2
AND
microsoftinternet_explorerMatch7.0
Node
microsoftwindows_vista
AND
microsoftinternet_explorerMatch7.0
VendorProductVersionCPE
microsoftwindows_xp*cpe:2.3:o:microsoft:windows_xp:*:sp2:*:*:*:*:*:*
microsoftinternet_explorer7.0cpe:2.3:a:microsoft:internet_explorer:7.0:*:*:*:*:*:*:*
microsoftwindows_2003_serversp1cpe:2.3:o:microsoft:windows_2003_server:sp1:*:*:*:*:*:*:*
microsoftwindows_2003_serversp2cpe:2.3:o:microsoft:windows_2003_server:sp2:*:*:*:*:*:*:*
microsoftwindows_vista*cpe:2.3:o:microsoft:windows_vista:*:*:*:*:*:*:*:*

CVSS2

9.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:M/Au:N/C:C/I:C/A:C

AI Score

7.1

Confidence

Low

EPSS

0.928

Percentile

99.1%