7.8
CVE-2007-2496
- EPSS 3.83%
- Veröffentlicht 04.05.2007 00:19:00
- Zuletzt bearbeitet 16.06.2026 22:39:43
- Quelle cve@mitre.org
- CVE-Watchlists
- Unerledigt
The WordOCX ActiveX control in WordViewer.ocx 3.2.0.5 allows remote attackers to cause a denial of service (Internet Explorer 7 crash) via a long (1) DoOleCommand, (2) FTPDownloadFile, (3) FTPUploadFile, (4) HttpUploadFile, (5) GotoPage, (6) Save, (7) SaveWebFile, (8) HttpDownloadFile, (9) Open, (10) OpenWebFile, (11) SaveAs, or (12) ShowWordStandardDialog property value.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Office Ocx ≫ Word Viewer Ocx Version3.2.0.5
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 3.83% | 0.887 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 7.8 | 10 | 6.9 |
AV:N/AC:L/Au:N/C:N/I:N/A:C
|
http://moaxb.blogspot.com/2007/05/moaxb-03-wordviewerocx-32-multiple_03.html
http://osvdb.org/34334
http://secunia.com/advisories/25100
http://www.securityfocus.com/bid/23784
http://www.vupen.com/english/advisories/2007/1634
https://exchange.xforce.ibmcloud.com/vulnerabilities/34027