Vulnerability Details CVE-2007-3109
The CERN Image Map Dispatcher (htimage.exe) in Microsoft FrontPage allows remote attackers to determine the existence, and possibly partial contents, of arbitrary files under the web root via a relative pathname in the PATH_INFO.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.2
EPSS Ranking 95.1%
CVSS Severity
CVSS v2 Score 6.4
Products affected by CVE-2007-3109
-
cpe:2.3:a:microsoft:frontpage:-
-
cpe:2.3:a:microsoft:frontpage:2000
-
cpe:2.3:a:microsoft:frontpage:2002
-
cpe:2.3:a:microsoft:frontpage:2003
-
cpe:2.3:a:microsoft:frontpage:97
-
cpe:2.3:a:microsoft:frontpage:98
-
cpe:2.3:a:microsoft:office:-
-
cpe:2.3:a:microsoft:office:16.0.14326.21330
-
cpe:2.3:a:microsoft:office:16.0.14326.21606
-
cpe:2.3:a:microsoft:office:16.0.16026.20172
-
cpe:2.3:a:microsoft:office:16.0.16130.20156
-
cpe:2.3:a:microsoft:office:16.0.16827.20138
-
cpe:2.3:a:microsoft:office:2.70.23021003
-
cpe:2.3:a:microsoft:office:2000
-
cpe:2.3:a:microsoft:office:2001
-
cpe:2.3:a:microsoft:office:2002
-
cpe:2.3:a:microsoft:office:2003
-
cpe:2.3:a:microsoft:office:2004
-
cpe:2.3:a:microsoft:office:2007
-
cpe:2.3:a:microsoft:office:2008
-
cpe:2.3:a:microsoft:office:2010
-
cpe:2.3:a:microsoft:office:2011
-
cpe:2.3:a:microsoft:office:2013
-
cpe:2.3:a:microsoft:office:2013_rt
-
cpe:2.3:a:microsoft:office:2016
-
cpe:2.3:a:microsoft:office:2019
-
cpe:2.3:a:microsoft:office:2021
-
cpe:2.3:a:microsoft:office:3.0
-
cpe:2.3:a:microsoft:office:4.0
-
cpe:2.3:a:microsoft:office:4.3
-
cpe:2.3:a:microsoft:office:95
-
cpe:2.3:a:microsoft:office:97
-
cpe:2.3:a:microsoft:office:98
-
cpe:2.3:a:microsoft:office:xp