CVE-2007-3109: Medium severity Microsoft Office vulnerability
The CERN Image Map Dispatcher (htimage.exe) in Microsoft FrontPage allows remote attackers to determine the existence, and possibly partial contents, of arbitrary files under the web root via a relative pathname in the PATHINFO.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2007-3109?
CVE-2007-3109 is considered to have a medium severity rating as it allows remote attackers to gain information about file existence and contents.
How do I fix CVE-2007-3109?
To mitigate CVE-2007-3109, it is recommended to disable or restrict the use of the CERN Image Map Dispatcher (htimage.exe) in Microsoft FrontPage.
Which software is affected by CVE-2007-3109?
CVE-2007-3109 affects Microsoft Office and Microsoft Office FrontPage.
What type of vulnerability is CVE-2007-3109?
CVE-2007-3109 is a path traversal vulnerability that can expose sensitive file information.
Can CVE-2007-3109 lead to unauthorized access?
Yes, CVE-2007-3109 can potentially allow unauthorized users to access information about files located under the web root.