9.3

CVE-2007-1765

Unspecified vulnerability in Microsoft Windows 2000 SP4 through Vista allows remote attackers to execute arbitrary code or cause a denial of service (persistent reboot) via a malformed ANI file, which results in memory corruption when processing cursors, animated cursors, and icons, a similar issue to CVE-2005-0416, as originally demonstrated using Internet Explorer 6 and 7.  NOTE: this issue might be a duplicate of CVE-2007-0038; if so, then use CVE-2007-0038 instead of this identifier.

Daten sind bereitgestellt durch National Vulnerability Database (NVD)
MicrosoftWindows 2000 SwEditionadvanced_server
MicrosoftWindows 2000 SwEditiondatacenter_server
MicrosoftWindows 2000 SwEditionprofessional
MicrosoftWindows 2000 Langja SwEditionserver
MicrosoftWindows 2000 Updatesp1 SwEditionadvanced_server
MicrosoftWindows 2000 Updatesp1 SwEditiondatacenter_server
MicrosoftWindows 2000 Updatesp1 SwEditionprofessional
MicrosoftWindows 2000 Updatesp1 SwEditionserver
MicrosoftWindows 2000 Updatesp2 SwEditionadvanced_server
MicrosoftWindows 2000 Updatesp2 SwEditiondatacenter_server
MicrosoftWindows 2000 Updatesp2 SwEditionserver
MicrosoftWindows 2000 Updatesp3 SwEditionadvanced_server
MicrosoftWindows 2000 Updatesp3 SwEditiondatacenter_server
MicrosoftWindows 2000 Updatesp3 SwEditionprofessional
MicrosoftWindows 2000 Updatesp3 SwEditionserver
MicrosoftWindows 2000 Updatesp4 SwEditionadvanced_server
MicrosoftWindows 2000 Updatesp4 SwEditiondatacenter_server
MicrosoftWindows 2000 Updatesp4 SwEditionprofessional
MicrosoftWindows 2000 Updatesp4 SwEditionserver
MicrosoftWindows 2000 Version- Updatesp2 SwEditionprofessional
MicrosoftWindows 2003 Server Version- SwEditiondatacenter
MicrosoftWindows 2003 Server Version- SwEditionenterprise
MicrosoftWindows 2003 Server Version- SwEditionstandard
MicrosoftWindows 2003 Server Version- SwEditionweb_edition
MicrosoftWindows Vista HwPlatformx86
MicrosoftWindows Vista SwEditionbusiness
MicrosoftWindows Vista SwEditiondecember_ctp
MicrosoftWindows Vista SwEditionenterprise
MicrosoftWindows Vista SwEditionhome_basic
MicrosoftWindows Vista SwEditionhome_premium
MicrosoftWindows Vista Updatebeta
MicrosoftWindows Vista Updatebeta1
MicrosoftWindows Vista Updatebeta2
MicrosoftWindows Xp Updatesp2 SwEditionhome
MicrosoftWindows Xp Updatesp2 SwEditionmedia_center
MicrosoftWindows Xp Updatesp2 SwEditionprofessional
MicrosoftWindows Xp Updatesp2 SwEditiontablet_pc
MicrosoftIe Version7.0 Editionvista
MicrosoftInternet Explorer Version <= 6
AvayaS3400
AvayaS8100
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 59.33% 0.982
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 9.3 8.6 10
AV:N/AC:M/Au:N/C:C/I:C/A:C