CVE-2008-0082
msm-remote.txt
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
0Exploited in Wild
-Decision
Descriptions
An ActiveX control (Messenger.UIAutomation.1) in Windows Messenger 4.7 and 5.1 is marked as safe-for-scripting, which allows remote attackers to control the Messenger application, and "change state," obtain contact information, and establish audio or video connections without notification via unknown vectors.
Un control ActiveX (Messenger.UIAutomation.1) en Windows Messenger versiones 4.7 y 5.1, es marcado como seguro para scripting, lo que permite a los atacantes remotos controlar la aplicación Messenger y "change state", obtener información de contacto, y establecer conexiones de audio o vídeo sin notificación por medio de vectores desconocidos.
A remote illegal access vulnerability exists in Microsoft Windows Live Messenger. A vicious attacker can control the Live Messenger via constructing a malicious web page.
CVSS Scores
SSVC
- Decision:-
Timeline
- 2008-01-03 CVE Reserved
- 2008-08-13 CVE Published
- 2024-08-07 CVE Updated
- 2025-06-02 EPSS Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
- ---------- First Exploit
CWE
- CWE-200: Exposure of Sensitive Information to an Unauthorized Actor
CAPEC
References (9)
URL | Tag | Source |
---|---|---|
http://www.securityfocus.com/archive/1/495467/100/0/threaded | Mailing List | |
http://www.securityfocus.com/bid/30551 | Vdb Entry | |
http://www.securitytracker.com/id?1020681 | Vdb Entry | |
http://www.us-cert.gov/cas/techalerts/TA08-225A.html | Third Party Advisory | |
http://www.vupen.com/english/advisories/2008/2354 | Vdb Entry | |
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A5995 | Signature |
URL | Date | SRC |
---|
URL | Date | SRC |
---|
URL | Date | SRC |
---|---|---|
http://marc.info/?l=bugtraq&m=121915960406986&w=2 | 2018-10-15 | |
http://secunia.com/advisories/31446 | 2018-10-15 | |
https://docs.microsoft.com/en-us/security-updates/securitybulletins/2008/ms08-050 | 2018-10-15 |
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Microsoft Search vendor "Microsoft" | Windows Messenger Search vendor "Microsoft" for product "Windows Messenger" | 4.7 Search vendor "Microsoft" for product "Windows Messenger" and version "4.7" | - |
Affected
| ||||||
Microsoft Search vendor "Microsoft" | Windows Messenger Search vendor "Microsoft" for product "Windows Messenger" | 5.1 Search vendor "Microsoft" for product "Windows Messenger" and version "5.1" | - |
Affected
|