Vulnerabilities > CVE-2007-0356 - Remote Denial of Service vulnerability in FolderTreeView ActiveX Control

047910
CVSS 5.0 - MEDIUM
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
NONE
Integrity impact
NONE
Availability impact
PARTIAL
network
low complexity
common-controls-replacement-project
microsoft
exploit available

Summary

The Common Controls Replacement Project (CCRP) FolderTreeview (FTV) ActiveX control (ccrpftv6.ocx) allows remote attackers to cause a denial of service (Internet Explorer 7 crash) via a long CCRP.RootFolder property value.

Vulnerable Configurations

Part Description Count
Application
Common_Controls_Replacement_Project
1
Application
Microsoft
1

Exploit-Db

descriptionCCRP Folder Treeview Control (ccrpftv6.ocx) IE Denial of Service Exploit. CVE-2007-0356. Dos exploit for windows platform
fileexploits/windows/dos/3142.html
idEDB-ID:3142
last seen2016-01-31
modified2007-01-17
platformwindows
port
published2007-01-17
reportershinnai
sourcehttps://www.exploit-db.com/download/3142/
titleCCRP Folder Treeview Control ccrpftv6.ocx - IE Denial of Service Exploit
typedos