PT-2007-3550 · Microsoft+1 · Internet Explorer+1

Published

2007-04-24

·

Updated

2018-10-16

·

CVE-2007-2210

CVSS v2.0

7.8

High

VectorAV:N/AC:L/Au:N/C:N/I:N/A:C
Name of the Vulnerable Software and Affected Versions Netsprint Ask IE Toolbar version 1.1
Description The issue is related to improper memory handling, possibly a buffer overflow, in a certain ActiveX control in askPopStp.dll. This can cause a denial of service, leading to an Internet Explorer crash, when a long value is set for the AddAllowed property.
Recommendations For Netsprint Ask IE Toolbar version 1.1, consider disabling the affected ActiveX control in askPopStp.dll as a temporary workaround to prevent potential crashes of Internet Explorer.

Exploit

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2007-2210

Affected Products

Internet Explorer
Netsprint Ask Ie Toolbar