CVE-2007-4790

Microsoft Internet Explorer - Memory Corruption

Title source: rule

Description

Stack-based buffer overflow in certain ActiveX controls in (1) FPOLE.OCX 6.0.8450.0 and (2) Foxtlib.ocx, as used in the Microsoft Visual FoxPro 6.0 fpole 1.0 Type Library; and Internet Explorer 5.01, 6 SP1 and SP2, and 7; allows remote attackers to execute arbitrary code via a long first argument to the FoxDoCmd function.

Exploits (1)

exploitdb WORKING POC VERIFIED
by shinnai · htmldoswindows
https://www.exploit-db.com/exploits/4369

Scores

EPSS 0.7368
EPSS Percentile 98.8%

Details

CWE
CWE-119
Status published
Products (4)
microsoft/internet_explorer 5.01
microsoft/internet_explorer 6 sp1 (2 CPE variants)
microsoft/internet_explorer 7
microsoft/visual_foxpro 6.0
Published Sep 10, 2007
Tracked Since Feb 18, 2026