Vulnerabilities > CVE-2007-2903 - Buffer Overflow vulnerability in Microsoft Office 2000

047910
CVSS 5.0 - MEDIUM
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
NONE
Integrity impact
NONE
Availability impact
PARTIAL
network
low complexity
microsoft
exploit available

Summary

Buffer overflow in the HelpPopup method in the Microsoft Office 2000 Controllo UA di Microsoft Office ActiveX control (OUACTRL.OCX) 1.0.1.9 allows remote attackers to cause a denial of service (probably winhlp32.exe crash) via a long first argument. NOTE: it is not clear whether this issue crosses privilege boundaries.

Vulnerable Configurations

Part Description Count
Application
Microsoft
1

Exploit-Db

descriptionMicrosoft Office 2000 (OUACTRL.OCX v. 1.0.1.9) Remote DoS Exploit. CVE-2007-2903. Dos exploit for windows platform
idEDB-ID:3973
last seen2016-01-31
modified2007-05-23
published2007-05-23
reportershinnai
sourcehttps://www.exploit-db.com/download/3973/
titleMicrosoft Office 2000 OUACTRL.OCX 1.0.1.9 - Remote DoS Exploit