CVE-2007-1162: High severity Common Controls Replacement Project BrowseDialog Server vulnerability
A certain ActiveX control in the Common Controls Replacement Project (CCRP) CCRP BrowseDialog Server (ccrpbds6.dll) allows remote attackers to cause a denial of service (Internet Explorer 7 crash) via a long (1) IsFolderAvailable or (2) RootFolder property value, different vectors than CVE-2007-0371.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2007-1162?
CVE-2007-1162 is classified as a vulnerability that can lead to a denial of service, resulting in an Internet Explorer 7 crash.
How do I fix CVE-2007-1162?
Fixing CVE-2007-1162 involves updating the affected ActiveX control from the Common Controls Replacement Project to a patched version.
Which software is affected by CVE-2007-1162?
CVE-2007-1162 affects the Common Controls Replacement Project BrowseDialog Server.
What types of attacks can exploit CVE-2007-1162?
CVE-2007-1162 can be exploited through remote attacks using long property values for IsFolderAvailable or RootFolder.
When was CVE-2007-1162 disclosed?
CVE-2007-1162 was publicly disclosed in 2007.