7.8
CVSSv2

CVE-2007-1294

Published: 07/03/2007 Updated: 11/10/2017
CVSS v2 Base Score: 7.8 | Impact Score: 6.9 | Exploitability Score: 10
VMScore: 785
Vector: AV:N/AC:L/Au:N/C:N/I:N/A:C

Vulnerability Summary

A certain ActiveX control in the DivXBrowserPlugin (npdivx32.dll) in DivX Web Player, as distributed with DivX Player 1.3.0, allows remote malicious users to cause a denial of service (Internet Explorer 7 crash) via large values to DivxWP.Resize, related to resizing images.

Vulnerable Product Search on Vulmon Subscribe to Product

divx divx web player 1.3.0

Exploits

<pre> <code><span style="font: 10pt Courier New;"><span class="general1-symbol">----------------------------------------------------------------------------- DivX Web Player 130 (npdivx32dll) "Resize" method Denial of Service url: wwwdivxcom/ author: shinnai mail: shinnai[at]autistici[dot]org site: shinnai ...