CVE-2007-3902
published 2007-12-12CVE-2007-3902: Use-after-free vulnerability in the CRecalcProperty function in mshtml.dll in Microsoft Internet Explorer 5.01 through 7 allows remote attackers to execute…
PriorityP349critical9.3CVSS 2.0
AVNACMAuNCCICAC
EPSS
35.51%
98.3th percentile
Use-after-free vulnerability in the CRecalcProperty function in mshtml.dll in Microsoft Internet Explorer 5.01 through 7 allows remote attackers to execute arbitrary code by calling the setExpression method and then modifying the outerHTML property of an HTML element, one variant of "Uninitialized Memory Corruption Vulnerability."
Affected
17 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| microsoft | ie | — | — |
| microsoft | ie | — | — |
| microsoft | internet_explorer | — | — |
| microsoft | internet_explorer | — | — |
| microsoft | internet_explorer | — | — |
| microsoft | internet_explorer | — | — |
| microsoft | internet_explorer | — | — |
| microsoft | internet_explorer | — | — |
| microsoft | internet_explorer | — | — |
| microsoft | internet_explorer | — | — |
| microsoft | internet_explorer | — | — |
| microsoft | internet_explorer | — | — |
| microsoft | internet_explorer | — | — |
| microsoft | internet_explorer | — | — |
| microsoft | internet_explorer | — | — |
| microsoft | internet_explorer | — | — |
| microsoft | internet_explorer | — | — |
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-w772-rr97-rmmm: Microsoft Internet Explorer 5
ghsa_unreviewed·2022-05-01·CVSS 9.3
CVE-2007-5344 [CRITICAL] CWE-94 GHSA-w772-rr97-rmmm: Microsoft Internet Explorer 5
Microsoft Internet Explorer 5.01 through 7 allows remote attackers to execute arbitrary code via a crafted website using Javascript that creates, modifies, deletes, and accesses document objects using the tags property, which triggers heap corruption, related to uninitialized or deleted objects, a different issue than CVE-2007-3902 and CVE-2007-3903, and a variant of "Uninitialized Memory Corruption Vulnerability."
GHSA
GHSA-9xr7-28fx-hh67: Microsoft Internet Explorer 6 and 7 allows remote attackers to execute arbitrary code via uninitialized or deleted objects used in repeated calls to t
ghsa_unreviewed·2022-05-01·CVSS 9.3
CVE-2007-3903 [CRITICAL] GHSA-9xr7-28fx-hh67: Microsoft Internet Explorer 6 and 7 allows remote attackers to execute arbitrary code via uninitialized or deleted objects used in repeated calls to t
Microsoft Internet Explorer 6 and 7 allows remote attackers to execute arbitrary code via uninitialized or deleted objects used in repeated calls to the (1) cloneNode or (2) nodeValue JavaScript function, a different issue than CVE-2007-3902 and CVE-2007-5344, a variant of "Uninitialized Memory Corruption Vulnerability."
GHSA
GHSA-27m8-q4mw-5g3g: Use-after-free vulnerability in the CRecalcProperty function in mshtml
ghsa_unreviewed·2022-05-01
CVE-2007-3902 [HIGH] GHSA-27m8-q4mw-5g3g: Use-after-free vulnerability in the CRecalcProperty function in mshtml
Use-after-free vulnerability in the CRecalcProperty function in mshtml.dll in Microsoft Internet Explorer 5.01 through 7 allows remote attackers to execute arbitrary code by calling the setExpression method and then modifying the outerHTML property of an HTML element, one variant of "Uninitialized Memory Corruption Vulnerability."
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
http://labs.idefense.com/intelligence/vulnerabilities/display.php?id=631http://secunia.com/advisories/28036http://securitytracker.com/id?1019078http://www.securityfocus.com/archive/1/484887/100/0/threadedhttp://www.securityfocus.com/archive/1/485268/100/0/threadedhttp://www.securityfocus.com/bid/26506http://www.us-cert.gov/cas/techalerts/TA07-345A.htmlhttp://www.vupen.com/english/advisories/2007/4184http://www.zerodayinitiative.com/advisories/ZDI-07-073.htmlhttps://docs.microsoft.com/en-us/security-updates/securitybulletins/2007/ms07-069https://exchange.xforce.ibmcloud.com/vulnerabilities/38713https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A4582http://labs.idefense.com/intelligence/vulnerabilities/display.php?id=631http://secunia.com/advisories/28036http://securitytracker.com/id?1019078http://www.securityfocus.com/archive/1/484887/100/0/threadedhttp://www.securityfocus.com/archive/1/485268/100/0/threadedhttp://www.securityfocus.com/bid/26506http://www.us-cert.gov/cas/techalerts/TA07-345A.htmlhttp://www.vupen.com/english/advisories/2007/4184http://www.zerodayinitiative.com/advisories/ZDI-07-073.htmlhttps://docs.microsoft.com/en-us/security-updates/securitybulletins/2007/ms07-069https://exchange.xforce.ibmcloud.com/vulnerabilities/38713https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A4582
2007-12-12
Published