PoC Index

CVE-2007-2496

HIGH 7.8EPSS 3.8%

The WordOCX ActiveX control in WordViewer.ocx 3.2.0.5 allows remote attackers to cause a denial of service (Internet Explorer 7 crash) via a long (1) DoOleCommand, (2) FTPDownloadFile, (3) FTPUploadFile, (4) HttpUploadFile, (5) GotoPage, (6) Save, (7) SaveWebFile, (8) HttpDownloadFile, (9) Open, (10) OpenWebFile, (11) SaveAs, or (12) ShowWordStandardDialog property value.

CVSS v2.0
7.8 HIGHAV:N/AC:L/Au:N/C:N/I:N/A:C
EPSS
3.83% chance of exploitation in the next 30 days, 89th percentile
Published
2007-05-04
Updated
2024-08-07

ExploitDB entries (1)

References

Related