← All CVEs

CVE-2007-0026

high · 7.6

The OLE Dialog component in Microsoft Windows 2000 SP4, XP SP2, and 2003 SP1 allows user-assisted remote attackers to execute arbitrary code via an RTF file with a malformed OLE object that triggers memory corruption.

7.6
CVSS
24.8%
EPSS (exploit prob.)
98th
EPSS percentile
2007-02-13
Published

AV:N/AC:H/Au:N/C:C/I:C/A:C

Affected products

VendorProductAffected versions
microsoftwindows_2000all versions
microsoftwindows_2003_serversp1
microsoftwindows_xpall versions

Check a specific version with /api/v1/cve/match.

References

Query this programmatically:

curl https://evil-db.io/api/v1/cve/CVE-2007-0026