CVE-2007-5470
lowCVSS v3 Base Score
2.1
AV:L/AC:L/Au:N/C:P/I:N/A:N
EPSS Score
1.3%
Exploitation probability in 30 days
Top 21% most likely to be exploited
Attack Characteristics
Attack Vector
Local
Attack Complexity
Low
Confidentiality
P
Integrity
None
Availability
None
Published: October 16, 2007 (6785 days ago)
Last Modified: April 23, 2026
Vendor: Microsoft
Source: NVD
Vulnerability Report
Generated by CyberWatcher
Description
Microsoft Expression Media stores the catalog password in cleartext in the catalog IVC file, which allows local users to obtain sensitive information and gain access to the catalog by reading the IVC file.
CWE
CWE-200Affected Products
microsoft expression media