Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

Test ID:1.3.6.1.4.1.25623.1.0.102053
Category:Windows : Microsoft Bulletins
Title:Microsoft Windows Vector Markup Language Vulnerabilities (929969)
Summary:Remote exploitation of an integer overflow vulnerability in the; Vector Markup Language (VML) support in multiple Microsoft products allows attackers to execute; arbitrary code within the context of the user running the vulnerable application.
Description:Summary:
Remote exploitation of an integer overflow vulnerability in the
Vector Markup Language (VML) support in multiple Microsoft products allows attackers to execute
arbitrary code within the context of the user running the vulnerable application.

Solution:
The vendor has released updates. Please see the references for
more information.

CVSS Score:
9.3

CVSS Vector:
AV:N/AC:M/Au:N/C:C/I:C/A:C

Cross-Ref: Common Vulnerability Exposure (CVE) ID: CVE-2007-0024
BugTraq ID: 21930
http://www.securityfocus.com/bid/21930
Bugtraq: 20070116 MS07-004 VML Integer Overflow Exploit (Google Search)
http://www.securityfocus.com/archive/1/457053/100/0/threaded
Bugtraq: 20070117 Re: MS07-004 VML Integer Overflow Exploit (Google Search)
http://www.securityfocus.com/archive/1/457164/100/0/threaded
Cert/CC Advisory: TA07-009A
http://www.us-cert.gov/cas/techalerts/TA07-009A.html
CERT/CC vulnerability note: VU#122084
http://www.kb.cert.org/vuls/id/122084
HPdes Security Advisory: HPSBST02184
http://www.securityfocus.com/archive/1/457274/100/0/threaded
HPdes Security Advisory: SSRT071296
http://labs.idefense.com/intelligence/vulnerabilities/display.php?id=462
Microsoft Security Bulletin: MS07-004
https://docs.microsoft.com/en-us/security-updates/securitybulletins/2007/ms07-004
Microsoft Knowledge Base article: 929969
http://support.microsoft.com/?kbid=929969
http://www.osvdb.org/31250
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A1058
http://securitytracker.com/id?1017489
http://secunia.com/advisories/23677
http://www.vupen.com/english/advisories/2007/0105
http://www.vupen.com/english/advisories/2007/0129
XForce ISS Database: ie-vml-record-bo(31287)
https://exchange.xforce.ibmcloud.com/vulnerabilities/31287
CopyrightCopyright (C) 2010 LSS

This is only one of 145615 vulnerability tests in our test suite. Find out more about running a complete security audit.

To run a free test of this vulnerability against your system, register below.




© 1998-2025 E-Soft Inc. All rights reserved.