CVE-2007-1202 is a heap corruption vulnerability in Microsoft Word and Word Viewer across several versions, as well as Microsoft Works Suite, stemming from improper parsing of rich text property strings. This user-assisted remote vulnerability has a CVSS score of 6.8, indicating a medium severity with network access, medium attack complexity, and potential for partial confidentiality, integrity, and availability impact. Despite its age and an EPSS score suggesting some exploitability, there is no public exploit code (Metasploit, Nuclei, ExploitDB), nor any evidence of active exploitation or significant community discussion or media coverage.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
2000CPE matchmatch criteria | cpe:2.3:a:microsoft:word:2000:sp3:*:*:*:*:*:* | ||
2002CPE matchmatch criteria | cpe:2.3:a:microsoft:word:2002:sp3:*:*:*:*:*:* | ||
2003CPE matchmatch criteria | cpe:2.3:a:microsoft:word:2003:sp2:*:*:*:*:*:* | ||
2004CPE matchmatch criteria | cpe:2.3:a:microsoft:word:2004:*:mac:*:*:*:*:* | ||
2003CPE matchmatch criteria | cpe:2.3:a:microsoft:word_viewer:2003:*:*:*:*:*:*:* |
CVSS version used by this source: 2.0
AV:N/AC:M/Au:N/C:P/I:P/A:P
No social media mentions found for this CVE.
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.0 Bluesky, 0.0 Mastodon, and 0.2 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.0 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Remediation records are not available for this CVE.