PT-2007-3550 · Microsoft+1 · Internet Explorer+1
Published
2007-04-24
·
Updated
2018-10-16
·
CVE-2007-2210
CVSS v2.0
7.8
High
| Vector | AV:N/AC:L/Au:N/C:N/I:N/A:C |
Name of the Vulnerable Software and Affected Versions
Netsprint Ask IE Toolbar version 1.1
Description
The issue is related to improper memory handling, possibly a buffer overflow, in a certain ActiveX control in askPopStp.dll. This can cause a denial of service, leading to an Internet Explorer crash, when a long value is set for the
AddAllowed property.Recommendations
For Netsprint Ask IE Toolbar version 1.1, consider disabling the affected ActiveX control in askPopStp.dll as a temporary workaround to prevent potential crashes of Internet Explorer.
Exploit
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Internet Explorer
Netsprint Ask Ie Toolbar