Vulnerabilities > CVE-2007-0024 - Unspecified vulnerability in Microsoft IE and Internet Explorer

047910
CVSS 9.3 - CRITICAL
Attack vector
NETWORK
Attack complexity
MEDIUM
Privileges required
NONE
Confidentiality impact
COMPLETE
Integrity impact
COMPLETE
Availability impact
COMPLETE
network
microsoft
critical
nessus
exploit available

Summary

Integer overflow in the Vector Markup Language (VML) implementation (vgx.dll) in Microsoft Internet Explorer 5.01, 6, and 7 on Windows 2000 SP4, XP SP2, Server 2003, and Server 2003 SP1 allows remote attackers to execute arbitrary code via a crafted web page that contains unspecified integer properties that cause insufficient memory allocation and trigger a buffer overflow, aka the "VML Buffer Overrun Vulnerability."

Exploit-Db

  • descriptionMS Internet Explorer VML Download and Execute Exploit (MS07-004). CVE-2007-0024. Remote exploit for windows platform
    idEDB-ID:3148
    last seen2016-01-31
    modified2007-01-17
    published2007-01-17
    reporterpang0
    sourcehttps://www.exploit-db.com/download/3148/
    titleMicrosoft Internet Explorer - VML Download and Execute Exploit MS07-004
  • descriptionMS Internet Explorer VML Remote Buffer Overflow Exploit (MS07-004). CVE-2007-0024. Remote exploit for windows platform
    idEDB-ID:3137
    last seen2016-01-31
    modified2007-01-16
    published2007-01-16
    reporterLifeAsaGeek
    sourcehttps://www.exploit-db.com/download/3137/
    titleMicrosoft Internet Explorer - VML Remote Buffer Overflow Exploit MS07-004

Nessus

NASL familyWindows : Microsoft Bulletins
NASL idSMB_NT_MS07-004.NASL
descriptionThe remote host is running a version of Internet Explorer or Outlook Express that is vulnerable to a bug in the Vector Markup Language (VML) handling routine that could allow an attacker execute arbitrary code on the remote host by sending a specially crafted email or by luring a user on the remote host into visiting a rogue website.
last seen2020-06-01
modified2020-06-02
plugin id24000
published2007-01-09
reporterThis script is Copyright (C) 2007-2018 Tenable Network Security, Inc.
sourcehttps://www.tenable.com/plugins/nessus/24000
titleMS07-004: Vulnerability in Vector Markup Language Could Allow Remote Code Execution (929969)

Oval

accepted2008-05-05T04:00:07.621-04:00
classvulnerability
contributors
  • nameSudhir Gandhe
    organizationSecure Elements, Inc.
  • nameClifford Farrugia
    organizationGFI Software
definition_extensions
  • commentMicrosoft Windows Server 2003 (x86) Gold is installed
    ovaloval:org.mitre.oval:def:165
  • commentMicrosoft Windows Server 2003 SP1 (x86) is installed
    ovaloval:org.mitre.oval:def:565
  • commentMicrosoft Internet Explorer 6 is installed
    ovaloval:org.mitre.oval:def:563
  • commentMicrosoft Windows Server 2003 (x86) Gold is installed
    ovaloval:org.mitre.oval:def:165
  • commentMicrosoft Windows Server 2003 SP1 (x86) is installed
    ovaloval:org.mitre.oval:def:565
  • commentMicrosoft Internet Explorer 7 is installed
    ovaloval:org.mitre.oval:def:627
  • commentMicrosoft Windows XP SP2 or later is installed
    ovaloval:org.mitre.oval:def:521
  • commentMicrosoft Internet Explorer 7 is installed
    ovaloval:org.mitre.oval:def:627
  • commentMicrosoft Windows XP SP2 or later is installed
    ovaloval:org.mitre.oval:def:521
  • commentMicrosoft Internet Explorer 6 is installed
    ovaloval:org.mitre.oval:def:563
  • commentMicrosoft Windows XP SP1 (64-bit) is installed
    ovaloval:org.mitre.oval:def:480
  • commentMicrosoft Internet Explorer 6 is installed
    ovaloval:org.mitre.oval:def:563
  • commentMicrosoft Windows 2000 SP4 or later is installed
    ovaloval:org.mitre.oval:def:229
  • commentMicrosoft Internet Explorer 6 is installed
    ovaloval:org.mitre.oval:def:563
  • commentMicrosoft Windows 2000 SP4 or later is installed
    ovaloval:org.mitre.oval:def:229
  • commentMicrosoft Internet Explorer 5.01 SP4 is installed
    ovaloval:org.mitre.oval:def:325
descriptionInteger overflow in the Vector Markup Language (VML) implementation (vgx.dll) in Microsoft Internet Explorer 5.01, 6, and 7 on Windows 2000 SP4, XP SP2, Server 2003, and Server 2003 SP1 allows remote attackers to execute arbitrary code via a crafted web page that contains unspecified integer properties that cause insufficient memory allocation and trigger a buffer overflow, aka the "VML Buffer Overrun Vulnerability."
familywindows
idoval:org.mitre.oval:def:1058
statusaccepted
submitted2007-01-09T06:00:00
titleVulnerability in Vector Markup Language (VML) Could Allow Remote Code Execution
version23

Saint

bid21930
descriptionInternet Explorer VML integer overflow
idwin_patch_ie_vmljan07
osvdb31250
titleie_vml_int_overflow
typeclient