CVE-2007-5277

4.3
CVSS v2.0 Base Score
9.71%
LOW RiskEPSS (95th percentile)
NVD-CWE-Other

Microsoft Internet Explorer 6 drops DNS pins based on failed connections to irrelevant TCP ports, which makes it easier for remote attackers to conduct DNS rebinding attacks, as demonstrated by a port 81 URL in an IMG SRC, when the DNS pin had been established for a session on port 80, a different issue than CVE-2006-4560.

Published: 10/8/2007
Modified: 6/16/2026
Back to CVE Lookup

Vulnerability Summary

CVSS v2 Score

4.3

AV:N/AC:M/Au:N/C:N/I:P/A:N

EPSS Score (Exploitation Probability)

9.71%LOW Exploitation Risk
95th percentile

This vulnerability has a 9.71% probability of being exploited in the next 30 days, ranking higher than 95% of all scored CVEs.

CWE Classification

NVD-CWE-Other
Advertisement