CVE Vulnerabilities

CVE-2007-4848

Published: Sep 12, 2007 | Modified: Nov 21, 2024
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
4.3 MEDIUM
AV:N/AC:M/Au:N/C:P/I:N/A:N
RedHat/V2
RedHat/V3
Ubuntu

Microsoft Internet Explorer 4.0 through 7 allows remote attackers to determine the existence of local files that have associated images via a res:// URI in the src property of a JavaScript Image object, as demonstrated by the URI for a bitmap image resource within a (1) .exe or (2) .dll file.

Affected Software

Name Vendor Start Version End Version
Ie Microsoft 4.x (including) 4.x (including)
Ie Microsoft 5.0-sp1 (including) 5.0-sp1 (including)
Ie Microsoft 5.0-sp4 (including) 5.0-sp4 (including)
Ie Microsoft 5.0_ta3 (including) 5.0_ta3 (including)
Ie Microsoft 5.x (including) 5.x (including)
Ie Microsoft 6.0-sp1 (including) 6.0-sp1 (including)
Ie Microsoft 6.0-sp2 (including) 6.0-sp2 (including)
Internet_explorer Microsoft 4.0 (including) 4.0 (including)
Internet_explorer Microsoft 4.0.1 (including) 4.0.1 (including)
Internet_explorer Microsoft 4.1 (including) 4.1 (including)
Internet_explorer Microsoft 4.5 (including) 4.5 (including)
Internet_explorer Microsoft 5 (including) 5 (including)
Internet_explorer Microsoft 5.0 (including) 5.0 (including)
Internet_explorer Microsoft 5.0.1 (including) 5.0.1 (including)
Internet_explorer Microsoft 5.0.1-sp1 (including) 5.0.1-sp1 (including)
Internet_explorer Microsoft 5.0.1-sp2 (including) 5.0.1-sp2 (including)
Internet_explorer Microsoft 5.0.1-sp3 (including) 5.0.1-sp3 (including)
Internet_explorer Microsoft 5.0.1-sp4 (including) 5.0.1-sp4 (including)
Internet_explorer Microsoft 5.01 (including) 5.01 (including)
Internet_explorer Microsoft 5.1 (including) 5.1 (including)
Internet_explorer Microsoft 5.01-sp1 (including) 5.01-sp1 (including)
Internet_explorer Microsoft 5.01-sp2 (including) 5.01-sp2 (including)
Internet_explorer Microsoft 5.01-sp3 (including) 5.01-sp3 (including)
Internet_explorer Microsoft 5.01-sp4 (including) 5.01-sp4 (including)
Internet_explorer Microsoft 5.2.3 (including) 5.2.3 (including)
Internet_explorer Microsoft 5.5 (including) 5.5 (including)
Internet_explorer Microsoft 5.5-preview (including) 5.5-preview (including)
Internet_explorer Microsoft 5.5-sp1 (including) 5.5-sp1 (including)
Internet_explorer Microsoft 5.5-sp2 (including) 5.5-sp2 (including)
Internet_explorer Microsoft 6 (including) 6 (including)
Internet_explorer Microsoft 6-sp1 (including) 6-sp1 (including)
Internet_explorer Microsoft 6.0 (including) 6.0 (including)
Internet_explorer Microsoft 6.0.2600 (including) 6.0.2600 (including)
Internet_explorer Microsoft 6.0.2800 (including) 6.0.2800 (including)
Internet_explorer Microsoft 6.0.2800.1106 (including) 6.0.2800.1106 (including)
Internet_explorer Microsoft 6.0.2900 (including) 6.0.2900 (including)
Internet_explorer Microsoft 6.0.2900.2180 (including) 6.0.2900.2180 (including)
Internet_explorer Microsoft 7 (including) 7 (including)
Internet_explorer Microsoft 7.0 (including) 7.0 (including)
Internet_explorer Microsoft 7.0-beta (including) 7.0-beta (including)
Internet_explorer Microsoft 7.0-beta1 (including) 7.0-beta1 (including)
Internet_explorer Microsoft 7.0-beta2 (including) 7.0-beta2 (including)
Internet_explorer Microsoft 7.0-beta3 (including) 7.0-beta3 (including)
Internet_explorer Microsoft 7.0.5730.11 (including) 7.0.5730.11 (including)

References