CVE-2007-6753: Medium severity Microsoft Windows 2000 vulnerability
Untrusted search path vulnerability in Shell32.dll in Microsoft Windows 2000, Windows XP, Windows Vista, Windows Server 2008, and Windows 7, when using an environment configured with a string such as %APPDATA% or %PROGRAMFILES% in a certain way, allows local users to gain privileges via a Trojan horse DLL under the current working directory, as demonstrated by iTunes and Safari.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2007-6753?
CVE-2007-6753 is a high severity vulnerability that allows local users to gain elevated privileges.
How do I fix CVE-2007-6753?
To mitigate CVE-2007-6753, ensure that your system is updated with the latest security patches from Microsoft.
What versions of Windows are affected by CVE-2007-6753?
CVE-2007-6753 affects Windows 2000, Windows XP, Windows Vista, Windows Server 2008, and Windows 7.
What type of vulnerability is CVE-2007-6753?
CVE-2007-6753 is classified as an untrusted search path vulnerability.
Can CVE-2007-6753 be exploited remotely?
CVE-2007-6753 requires local access to the machine for exploitation.