AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2007-1499

MEDIUM · CVSS 4.3 EPSS 29.78%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2007-03-17 · Last synced 2026-08-04

CyberRota Analysis

AI analysis pending.

CVE
CVE-2007-1499
Severity
MEDIUM
CVSS
4.3
EPSS
29.78%
Microsoft Windows

Original NVD Description

Microsoft Internet Explorer 7.0 on Windows XP and Vista allows remote attackers to conduct phishing attacks and possibly execute arbitrary code via a res: URI to navcancl.htm with an arbitrary URL as an argument, which displays the URL in the location bar of the "Navigation Canceled" page and injects the script into the "Refresh the page" link, aka Navigation Cancel Page Spoofing Vulnerability."