9.3
CVSSv2

CVE-2007-3902

Published: 12/12/2007 Updated: 23/07/2021
CVSS v2 Base Score: 9.3 | Impact Score: 10 | Exploitability Score: 8.6
VMScore: 828
Vector: AV:N/AC:M/Au:N/C:C/I:C/A:C

Vulnerability Summary

Use-after-free vulnerability in the CRecalcProperty function in mshtml.dll in Microsoft Internet Explorer 5.01 through 7 allows remote malicious users to execute arbitrary code by calling the setExpression method and then modifying the outerHTML property of an HTML element, one variant of "Uninitialized Memory Corruption Vulnerability."

Vulnerable Product Search on Vulmon Subscribe to Product

microsoft internet explorer 5

microsoft internet explorer 5.2.3

microsoft internet explorer 5.5

microsoft internet explorer 6.0.2600

microsoft internet explorer 6.0.2800

microsoft internet explorer 7.0

microsoft internet explorer 7.0.5730.11

microsoft internet explorer 5.01

microsoft ie 5.x

microsoft internet explorer 6.0.2900.2180

microsoft ie 6.0

microsoft internet explorer 6.0.2800.1106

microsoft internet explorer 6.0.2900

microsoft internet explorer 5.1

microsoft internet explorer 6

microsoft internet explorer 6.0

microsoft internet explorer 7