CVE-2007-4790
Stack-based buffer overflow in certain ActiveX controls in (1) FPOLE.OCX 6.0.8450.0 and (2) Foxtlib.ocx, as used in the Microsoft Visual FoxPro 6.0 fpole 1.0 Type Library; and Internet Explorer 5.01, 6 SP1 and SP2, and 7; allows remote attackers to execute arbitrary code via a long first argument to the FoxDoCmd function.
- Affected products
- Internet Explorer, Visual Foxpro
- Microsoft Internet Explorer
- = 5.01, 6, 7
- Microsoft Visual Foxpro
- = 6.0
- Fix
- Available
- CVSS 2.0
- 7.5 HIGH
- EPSS
- 54.9% (99th percentile)
- Weakness
- CWE-119
- NVD status
- Modified
- Published
- 2007-09-10
CVE-2007-4790 at NVD
2 known exploits for CVE-2007-4790
Proof-of-concept code and exploit modules indexed by Sploitus