PT-2007-3550 · Microsoft+1 · Internet Explorer+1

Publicado

2007-04-24

·

Atualizado

2018-10-16

·

CVE-2007-2210

CVSS v2.0

7.8

Alta

VetorAV:N/AC:L/Au:N/C:N/I:N/A:C
Name of the Vulnerable Software and Affected Versions Netsprint Ask IE Toolbar version 1.1
Description The issue is related to improper memory handling, possibly a buffer overflow, in a certain ActiveX control in askPopStp.dll. This can cause a denial of service, leading to an Internet Explorer crash, when a long value is set for the AddAllowed property.
Recommendations For Netsprint Ask IE Toolbar version 1.1, consider disabling the affected ActiveX control in askPopStp.dll as a temporary workaround to prevent potential crashes of Internet Explorer.

Exploit

Correção

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Identificadores relacionados

CVE-2007-2210

Produtos afetados

Internet Explorer
Netsprint Ask Ie Toolbar