CVE-2007-0216: Input Validation
wkcvqd01.dll in Microsoft Works 6 File Converter, as used in Office 2003 SP2, Works 8.0, and Works Suite 2005, allows remote attackers to execute arbitrary code via a .wps file with crafted section length headers, aka "Microsoft Works File Converter Input Validation Vulnerability."
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2007-0216?
CVE-2007-0216 has a medium severity rating, indicating a potential risk of remote code execution.
How does CVE-2007-0216 exploit a system?
CVE-2007-0216 exploits a vulnerability in the wkcvqd01.dll file when processing specially crafted .wps files.
What software versions are affected by CVE-2007-0216?
CVE-2007-0216 affects Microsoft Office 2003 (SP2 and SP3), Microsoft Works 8.0, and Microsoft Works 2005.
How do I fix CVE-2007-0216?
To fix CVE-2007-0216, users should apply the latest security updates provided by Microsoft for the affected software.
What type of vulnerability is CVE-2007-0216 classified as?
CVE-2007-0216 is classified as an input validation vulnerability that can lead to remote code execution.