CVE-2008-0120
 
Severity Score
7.8
*CVSS v3
Exploit Likelihood
*EPSS
Affected Versions
*CPE
Public Exploits
0
*Multiple Sources
Exploited in Wild
-
*KEV
Decision
-
*SSVC
Descriptions
Integer overflow in Microsoft PowerPoint Viewer 2003 allows remote attackers to execute arbitrary code via a PowerPoint file with a malformed picture index that triggers memory corruption, related to handling of CString objects, aka "Memory Allocation Vulnerability."
Un desbordamiento de enteros en PowerPoint Viewer 2003 de Microsoft, permite a los atacantes remotos ejecutar código arbitrario por medio de un archivo de PowerPoint con un índice de imagen malformado que desencadena una corrupción de memoria, relacionados con el manejo de objetos CString, también se conoce como "Memory Allocation Vulnerability".
*Credits:
N/A
CVSS Scores
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality
Integrity
Availability
Attack Vector
Attack Complexity
Authentication
Confidentiality
Integrity
Availability
* Common Vulnerability Scoring System
SSVC
- Decision:-
Exploitation
Automatable
Tech. Impact
* Organization's Worst-case Scenario
Timeline
- 2008-01-07 CVE Reserved
- 2008-08-13 CVE Published
- 2024-08-07 CVE Updated
- 2025-03-30 EPSS Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
- ---------- First Exploit
CWE
- CWE-399: Resource Management Errors
CAPEC
References (9)
URL | Tag | Source |
---|---|---|
http://labs.idefense.com/intelligence/vulnerabilities/display.php?id=739 | Third Party Advisory | |
http://www.securityfocus.com/bid/30552 | Vdb Entry | |
http://www.securitytracker.com/id?1020676 | Vdb Entry | |
http://www.us-cert.gov/cas/techalerts/TA08-225A.html | Third Party Advisory | |
http://www.vupen.com/english/advisories/2008/2355 | Vdb Entry | |
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A5768 | Signature |
URL | Date | SRC |
---|
URL | Date | SRC |
---|---|---|
http://secunia.com/advisories/31453 | 2018-10-12 |
URL | Date | SRC |
---|---|---|
http://marc.info/?l=bugtraq&m=121915960406986&w=2 | 2018-10-12 | |
https://docs.microsoft.com/en-us/security-updates/securitybulletins/2008/ms08-051 | 2018-10-12 |
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Microsoft Search vendor "Microsoft" | Office Powerpoint Viewer Search vendor "Microsoft" for product "Office Powerpoint Viewer" | 2003 Search vendor "Microsoft" for product "Office Powerpoint Viewer" and version "2003" | - |
Affected
|