CVE-2007-2903

N/A Unknown
Published: May 30, 2007 Modified: April 23, 2026
View on NVD

Description

Buffer overflow in the HelpPopup method in the Microsoft Office 2000 Controllo UA di Microsoft Office ActiveX control (OUACTRL.OCX) 1.0.1.9 allows remote attackers to cause a denial of service (probably winhlp32.exe crash) via a long first argument. NOTE: it is not clear whether this issue crosses privilege boundaries.

AI Explanation

Get an AI-powered plain-language explanation of this vulnerability and remediation steps.

Login to generate AI explanation

References to Advisories, Solutions, and Tools

Patch Vendor Advisory Exploit Third Party Advisory
http://osvdb.org/36034
Source: cve@mitre.org
http://moaxb.blogspot.com/2007/05/moaxb-23-microsoft-office-2000.html
Source: af854a3a-2127-422b-91ae-364da2661108
Exploit
http://osvdb.org/36034
Source: af854a3a-2127-422b-91ae-364da2661108
http://shinnai.altervista.org/viewtopic.php?id=42&t_id=26
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.securityfocus.com/bid/24118
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.securitytracker.com/id?1018107
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.shinnai.altervista.org/moaxb/20070523/ouactrltxt.html
Source: af854a3a-2127-422b-91ae-364da2661108
Exploit
https://exchange.xforce.ibmcloud.com/vulnerabilities/34473
Source: af854a3a-2127-422b-91ae-364da2661108

14 reference(s) from NVD

Quick Stats

CVSS v3 Score
N/A / 10.0
EPSS (Exploit Probability)
42.5%
98th percentile
Exploitation Status
Not in CISA KEV

Affected Vendors

microsoft