← Back

CVE-2007-0612

nvd nist
Published: Jan 31, 2007Modified: Apr 23, 2026

JSON object

Loading...
7.8
Vector
AV:N/AC:L/Au:N/C:N/I:N/A:C
Exploitability: 10.0 / Impact: 6.9
Source: NVD

Description

Multiple ActiveX controls in Microsoft Windows 2000, XP, 2003, and Vista allows remote attackers to cause a denial of service (Internet Explorer crash) by accessing the bgColor, fgColor, linkColor, alinkColor, vlinkColor, or defaultCharset properties in the (1) giffile, (2) htmlfile, (3) jpegfile, (4) mhtmlfile, (5) ODCfile, (6) pjpegfile, (7) pngfile, (8) xbmfile, (9) xmlfile, (10) xslfile, or (11) wdfile objects in (a) mshtml.dll; or the (12) TriEditDocument.TriEditDocument or (13) TriEditDocument.TriEditDocument.1 objects in (b) triedit.dll, which cause a NULL pointer dereference.

Affected (10)

2 products
Ie
Internet Explorer
Configuration A
10 vulnerable
Vulnerable SoftwareAffected Versions
Microsoft
Version 5.0_ta3
Version 6.0 sp1
Version 7.0
Microsoft
Version 5.0.1
Version 5.0.1 sp1
Version 5.0.1 sp4
Version 5.5
Version 6.0
Version 7.0 beta1
Version 7.0 beta2

Timeline

No history available yet.