7.8
CVE-2007-0612
- EPSS 53.87%
- Published 31.01.2007 11:28:00
- Last modified 09.04.2025 00:30:58
- Source cve@mitre.org
- Teams watchlist Login
- Open Login
Multiple ActiveX controls in Microsoft Windows 2000, XP, 2003, and Vista allows remote attackers to cause a denial of service (Internet Explorer crash) by accessing the bgColor, fgColor, linkColor, alinkColor, vlinkColor, or defaultCharset properties in the (1) giffile, (2) htmlfile, (3) jpegfile, (4) mhtmlfile, (5) ODCfile, (6) pjpegfile, (7) pngfile, (8) xbmfile, (9) xmlfile, (10) xslfile, or (11) wdfile objects in (a) mshtml.dll; or the (12) TriEditDocument.TriEditDocument or (13) TriEditDocument.TriEditDocument.1 objects in (b) triedit.dll, which cause a NULL pointer dereference.
Data is provided by the National Vulnerability Database (NVD)
Microsoft ≫ Internet Explorer Version5.0.1
Microsoft ≫ Internet Explorer Version5.0.1 Updatesp1
Microsoft ≫ Internet Explorer Version5.0.1 Updatesp4
Microsoft ≫ Internet Explorer Version5.5
Microsoft ≫ Internet Explorer Version6.0
Microsoft ≫ Internet Explorer Version7.0 Updatebeta1
Microsoft ≫ Internet Explorer Version7.0 Updatebeta2
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
Type | Source | Score | Percentile |
---|---|---|---|
EPSS | FIRST.org | 53.87% | 0.979 |
Source | Base Score | Exploit Score | Impact Score | Vector string |
---|---|---|---|---|
nvd@nist.gov | 7.8 | 10 | 6.9 |
AV:N/AC:L/Au:N/C:N/I:N/A:C
|