PT-2007-2518 · Microsoft · Windows Explorer+2

Published

2007-02-26

·

Updated

2018-10-16

·

CVE-2007-1090

CVSS v2.0

7.1

High

VectorAV:N/AC:M/Au:N/C:N/I:N/A:C
Name of the Vulnerable Software and Affected Versions Microsoft Windows Explorer on Windows XP and 2003
Description The issue allows remote user-assisted attackers to cause a denial of service, resulting in a crash, via a malformed WMF file. This crash is triggered when the user browses the folder containing the malicious file.
Recommendations For Windows XP and 2003, avoid browsing folders that may contain malformed WMF files until a fix is available. As a temporary workaround, consider restricting access to potentially malicious files to minimize the risk of exploitation.

Exploit

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2007-1090

Affected Products

Windows Explorer
Windows 2003
Windows Xp