HIGH · 9.3

CVE-2007-1201

Unspecified vulnerability in certain COM objects in Microsoft Office Web Components 2000 allows user-assisted remote attackers to execute arbitrary code via vectors related to DataSource that trigger ...

Vulnerability Description

Unspecified vulnerability in certain COM objects in Microsoft Office Web Components 2000 allows user-assisted remote attackers to execute arbitrary code via vectors related to DataSource that trigger memory corruption, aka "Office Web Components DataSource Vulnerability."

CVSS Score

9.3

HIGH

AV:N/AC:M/Au:N/C:C/I:C/A:C
Confidentiality
COMPLETE
Integrity
COMPLETE
Availability
COMPLETE

Affected Products

VendorProductVersions
MicrosoftBiztalk Server2000
MicrosoftCommerce Server2000
MicrosoftInternet Security And Acceleration Server2000
MicrosoftOffice2000
MicrosoftVisual Studio .Net2002

Related Weaknesses (CWE)

References

FAQ

What is CVE-2007-1201?

CVE-2007-1201 is a vulnerability with a CVSS score of 9.3 (HIGH). Unspecified vulnerability in certain COM objects in Microsoft Office Web Components 2000 allows user-assisted remote attackers to execute arbitrary code via vectors related to DataSource that trigger ...

How severe is CVE-2007-1201?

CVE-2007-1201 has been rated HIGH with a CVSS base score of 9.3/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2007-1201?

Check the references section above for vendor advisories and patch information. Affected products include: Microsoft Biztalk Server, Microsoft Commerce Server, Microsoft Internet Security And Acceleration Server, Microsoft Office, Microsoft Visual Studio .Net.