AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2007-0039

HIGH · CVSS 7.8 EPSS 44.57%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2007-05-08 · Last synced 2026-08-04

CyberRota Analysis

This is a high severity vulnerability with a CVSS score of 7.8. It affects Microsoft, Exchange. Its EPSS score suggests a 44.6% probability of exploitation in the next 30 days. It may be remotely exploitable. It may lead to a denial-of-service condition.

CVE
CVE-2007-0039
Severity
HIGH
CVSS
7.8
EPSS
44.57%
Microsoft Exchange

Original NVD Description

The Exchange Collaboration Data Objects (EXCDO) functionality in Microsoft Exchange Server 2000 SP3, 2003 SP1 and SP2, and 2007 allows remote attackers to cause a denial of service (crash) via an Internet Calendar (iCal) file containing multiple X-MICROSOFT-CDO-MODPROPS (MODPROPS) properties in which the second MODPROPS is longer than the first, which triggers a NULL pointer dereference and an unhandled exception.