CVE-2007-1751
Microsoft Internet Explorer 5.01, 6, and 7 allows remote attackers to execute arbitrary code by causing Internet Explorer to access an uninitialized or deleted object, related to prototype variables and table cells, aka "Uninitialized Memory Corruption…
Does this matter?
EPSS puts the probability of exploitation in the next 30 days at 60.8%, higher than 99% of all known CVEs. Patch or mitigate before the next change window.
Description
Microsoft Internet Explorer 5.01, 6, and 7 allows remote attackers to execute arbitrary code by causing Internet Explorer to access an uninitialized or deleted object, related to prototype variables and table cells, aka "Uninitialized Memory Corruption Vulnerability."
- CVSS 2.0
- 9.3 HIGHAV:N/AC:M/Au:N/C:C/I:C/A:C
- EPSS
- 60.84% probability · 99th percentile
- CISA KEV
- Not listed
- Weakness
- CWE-908
- Affected
- microsoft/internet explorer
- Source
- secure@microsoft.com
References
- http://osvdb.org/35351Broken Link
- http://secunia.com/advisories/25627Broken Link, Vendor Advisory
- http://securitytracker.com/id?1018235Broken Link, Third Party Advisory, VDB Entry
- http://www.securityfocus.com/archive/1/471210/100/0/threadedBroken Link, Third Party Advisory, VDB Entry
- http://www.securityfocus.com/archive/1/471947/100/0/threadedBroken Link, Third Party Advisory, VDB Entry
- http://www.securityfocus.com/bid/24418Broken Link, Third Party Advisory, VDB Entry
- http://www.us-cert.gov/cas/techalerts/TA07-163A.htmlThird Party Advisory, US Government Resource
- http://www.vupen.com/english/advisories/2007/2153Broken Link, Vendor Advisory
- http://www.zerodayinitiative.com/advisories/ZDI-07-038.htmlThird Party Advisory, VDB Entry
- https://docs.microsoft.com/en-us/security-updates/securitybulletins/2007/ms07-033Patch, Vendor Advisory
- https://exchange.xforce.ibmcloud.com/vulnerabilities/34626Third Party Advisory, VDB Entry
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A1978Tool Signature
- http://osvdb.org/35351Broken Link
- http://secunia.com/advisories/25627Broken Link, Vendor Advisory
- http://securitytracker.com/id?1018235Broken Link, Third Party Advisory, VDB Entry
- http://www.securityfocus.com/archive/1/471210/100/0/threadedBroken Link, Third Party Advisory, VDB Entry
- http://www.securityfocus.com/archive/1/471947/100/0/threadedBroken Link, Third Party Advisory, VDB Entry
- http://www.securityfocus.com/bid/24418Broken Link, Third Party Advisory, VDB Entry
- http://www.us-cert.gov/cas/techalerts/TA07-163A.htmlThird Party Advisory, US Government Resource
- http://www.vupen.com/english/advisories/2007/2153Broken Link, Vendor Advisory
- http://www.zerodayinitiative.com/advisories/ZDI-07-038.htmlThird Party Advisory, VDB Entry
- https://docs.microsoft.com/en-us/security-updates/securitybulletins/2007/ms07-033Patch, Vendor Advisory
- https://exchange.xforce.ibmcloud.com/vulnerabilities/34626Third Party Advisory, VDB Entry
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A1978Tool Signature
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.