PT-2007-2518 · Microsoft · Windows Explorer+2
Published
2007-02-26
·
Updated
2018-10-16
·
CVE-2007-1090
CVSS v2.0
7.1
High
| Vector | AV:N/AC:M/Au:N/C:N/I:N/A:C |
Name of the Vulnerable Software and Affected Versions
Microsoft Windows Explorer on Windows XP and 2003
Description
The issue allows remote user-assisted attackers to cause a denial of service, resulting in a crash, via a malformed WMF file. This crash is triggered when the user browses the folder containing the malicious file.
Recommendations
For Windows XP and 2003, avoid browsing folders that may contain malformed WMF files until a fix is available. As a temporary workaround, consider restricting access to potentially malicious files to minimize the risk of exploitation.
Exploit
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Windows Explorer
Windows 2003
Windows Xp