Vulnerability in Microsoft XML Core Services Could Allow Remote Code ExecutionID: oval:org.mitre.oval:def:2069 | Date: (C)2007-08-15 (M)2024-02-29 |
Class: VULNERABILITY | Family: windows |
Microsoft XML Core Services (MSXML) 3.0 through 6.0 allows remote attackers to execute arbitrary code via the substringData method on a (1) TextNode or (2) XMLDOM object, which causes an integer overflow that leads to a buffer overflow.
Platform: |
Microsoft Windows Server 2019 |
Microsoft Windows Server 2016 |
Microsoft Windows 2000 |
Microsoft Windows 7 |
Microsoft Windows 8 |
Microsoft Windows 8.1 |
Microsoft Windows Server 2003 |
Microsoft Windows 10 |
Microsoft Windows Server 2008 |
Microsoft Windows Server 2008 R2 |
Microsoft Windows Server 2012 |
Microsoft Windows Server 2012 R2 |
Microsoft Windows Vista |
Microsoft Windows XP |
Product: |
Microsoft Office 2003 |
Microsoft Office 2007 |
Microsoft Sharepoint Team Services |
Microsoft XML Core Services 3.0 |
Microsoft XML Core Services 4.0 |
Microsoft XML Core Services 6.0 |