CVE-2013-0007
CRITICAL
9.3
CVSS Severity Score
Vulnerability Description
Microsoft XML Core Services (aka MSXML) 4.0, 5.0, and 6.0 does not properly parse XML content, which allows remote attackers to execute arbitrary code via a crafted web page, aka "MSXML XSLT Vulnerability."
Affected Platforms (CPE)
📦
Microsoft
Xml Core Services
= 3.0📦
Microsoft
Xml Core Services
= 4.0📦
Microsoft
Xml Core Services
= 6.0💻
Microsoft
Windows 7
All versions💻
Microsoft
Windows 7
All versions💻
Microsoft
Windows 8
All versions💻
Microsoft
Windows Server 2003
All versions💻
Microsoft
Windows Server 2008
All versions💻
Microsoft
Windows Server 2008
All versions💻
Microsoft
Windows Server 2008
= r2💻
Microsoft
Windows Server 2012
All versions💻
Microsoft
Windows Vista
All versions💻
Microsoft
Windows Xp
All versions💻
Microsoft
Windows Rt
All versions💻
Microsoft
Windows Server 2008
All versions💻
Microsoft
Windows Xp
All versions📦
Microsoft
Xml Core Services
= 5.0📦
Microsoft
Expression Web
All versions📦
Microsoft
Expression Web
= 2📦
Microsoft
Groove Server
= 2007📦
Microsoft
Groove Server
= 2007📦
Microsoft
Office
= 2003📦
Microsoft
Office
= 2007📦
Microsoft
Office
= 2007📦
Microsoft
Office Compatibility Pack
All versions📦
Microsoft
Office Compatibility Pack
All versions📦
Microsoft
Sharepoint Server
= 2007📦
Microsoft
Sharepoint Server
= 2007📦
Microsoft
