7.8
CVSSv2

CVE-2007-0612

Published: 31/01/2007 Updated: 23/07/2021
CVSS v2 Base Score: 7.8 | Impact Score: 6.9 | Exploitability Score: 10
VMScore: 785
Vector: AV:N/AC:L/Au:N/C:N/I:N/A:C

Vulnerability Summary

Multiple ActiveX controls in Microsoft Windows 2000, XP, 2003, and Vista allows remote malicious users to cause a denial of service (Internet Explorer crash) by accessing the bgColor, fgColor, linkColor, alinkColor, vlinkColor, or defaultCharset properties in the (1) giffile, (2) htmlfile, (3) jpegfile, (4) mhtmlfile, (5) ODCfile, (6) pjpegfile, (7) pngfile, (8) xbmfile, (9) xmlfile, (10) xslfile, or (11) wdfile objects in (a) mshtml.dll; or the (12) TriEditDocument.TriEditDocument or (13) TriEditDocument.TriEditDocument.1 objects in (b) triedit.dll, which cause a NULL pointer dereference.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

microsoft internet explorer 5.0.1

microsoft ie 6.0

microsoft ie 7.0

microsoft internet explorer 7.0

microsoft ie 5.0_ta3

microsoft internet explorer 5.5

microsoft internet explorer 6.0

Exploits

source: wwwsecurityfocuscom/bid/22288/info Microsoft Internet Explorer is prone to multiple denial-of-service vulnerabilities because the application fails to handle exceptional conditions These issues are triggered when an attacker entices a victim user to visit a malicious website Remote attackers may exploit these issues to crash I ...