PT-2007-5121 · Microsoft · Internet Explorer

Published

2007-10-09

·

Updated

2021-07-23

·

CVE-2007-3893

CVSS v2.0

6.8

Medium

VectorAV:N/AC:M/Au:N/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions: Microsoft Internet Explorer versions 5.01 through 7
Description: The issue is related to an unhandled error that leads to memory corruption, allowing remote attackers to execute arbitrary code. This can be achieved by constructing a specially crafted Web page. If a user views the Web page, it could allow remote code execution, potentially giving the attacker the same user rights as the logged-on user.
Recommendations: For Microsoft Internet Explorer versions 5.01 through 7, consider restricting access to Web pages from untrusted sources until a fix is available. As a temporary workaround, avoid viewing specially crafted Web pages that could trigger the unhandled error leading to memory corruption. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

RCE

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2007-3893

Affected Products

Internet Explorer