The WordOCX ActiveX control in WordViewer.ocx 3.2.0.5 allows remote attackers to cause a denial of service (Internet Explorer 7 crash) via a long (1) DoOleCommand, (2) FTPDownloadFile, (3) FTPUploadFile, (4) HttpUploadFile, (5) GotoPage, (6) Save, (7) SaveWebFile, (8) HttpDownloadFile, (9) Open, (10) OpenWebFile, (11) SaveAs, or (12) ShowWordStandardDialog property value.
References
Configurations
Information
Published : 2007-05-03 17:19
Updated : 2017-07-28 18:31
NVD link : CVE-2007-2496
Mitre link : CVE-2007-2496
JSON object : View
CWE
Products Affected
office_ocx
- word_viewer_ocx