cbcvebase.
CVE-2007-0217
published 2007-02-13

CVE-2007-0217: The wininet.dll FTP client code in Microsoft Internet Explorer 5.01 and 6 might allow remote attackers to execute arbitrary code via an FTP server response of…

PriorityP355critical10CVSS 2.0
AVNACLAuNCCICAC
EXPLOIT
EPSS
60.81%
99.1th percentile
The wininet.dll FTP client code in Microsoft Internet Explorer 5.01 and 6 might allow remote attackers to execute arbitrary code via an FTP server response of a specific length that causes a terminating null byte to be written outside of a buffer, which causes heap corruption.

Affected

5 ranges
VendorProductVersion rangeFixed in
microsoftie
microsoftinternet_explorer
microsoftinternet_explorer
microsoftinternet_explorer
microsoftinternet_explorer

Detection & IOCsextracted from sources · hover to see the quote

versionMSIE 6.02900.2180 (SP2)
  • Rogue/malicious FTP server sending crafted 220/331/230/215/250/200 response codes with oversized padding to Internet Explorer FTP clients; alert on FTP banner '220 waa waa wee waa' as a PoC indicator.
  • ·CVE-2007-0217 is a distinct issue from CVE-2007-3341; the latter is an unspecified FTP memory address disclosure, while CVE-2007-0217 is the heap overflow via crafted FTP response length.
CVEs like this are exactly what “Exploited This Week” covers.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.