First published: Tue Feb 12 2008(Updated: )
Heap-based buffer overflow in Object Linking and Embedding (OLE) Automation in Microsoft Windows 2000 SP4, XP SP2, Server 2003 SP1 and SP2, Vista, Office 2004 for Mac, and Visual basic 6.0 SP6 allows remote attackers to execute arbitrary code via a crafted script request.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Microsoft Windows 2000 | =sp4 | |
Microsoft Windows Server 2003 | =sp1 | |
Microsoft Windows Server 2003 | =sp2 | |
Microsoft Windows Vista | ||
Microsoft Windows XP | =sp2 | |
Microsoft Office | ||
Microsoft Visual Basic SDK | =6.0-sp6 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2007-0065 has a critical severity rating due to its potential to allow remote attackers to execute arbitrary code.
CVE-2007-0065 affects Microsoft Windows 2000 SP4, XP SP2, Server 2003 SP1 and SP2, Vista, Office 2004 for Mac, and Visual Basic 6.0 SP6.
To fix CVE-2007-0065, users should apply the latest security patches provided by Microsoft for the affected products.
CVE-2007-0065 is a heap-based buffer overflow vulnerability.
Yes, CVE-2007-0065 can be exploited remotely via crafted script requests.