Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2008-0082

Опубликовано: 13 авг. 2008
Источник: nvd
CVSS2: 10
EPSS Средний

Описание

An ActiveX control (Messenger.UIAutomation.1) in Windows Messenger 4.7 and 5.1 is marked as safe-for-scripting, which allows remote attackers to control the Messenger application, and "change state," obtain contact information, and establish audio or video connections without notification via unknown vectors.

Уязвимые конфигурации

Конфигурация 1

Одно из

cpe:2.3:a:microsoft:windows_messenger:4.7:*:*:*:*:*:*:*
cpe:2.3:a:microsoft:windows_messenger:5.1:*:*:*:*:*:*:*

EPSS

Процентиль: 98%
0.60161
Средний

10 Critical

CVSS2

Дефекты

CWE-200

Связанные уязвимости

github
почти 4 года назад

An ActiveX control (Messenger.UIAutomation.1) in Windows Messenger 4.7 and 5.1 is marked as safe-for-scripting, which allows remote attackers to control the Messenger application, and "change state," obtain contact information, and establish audio or video connections without notification via unknown vectors.

EPSS

Процентиль: 98%
0.60161
Средний

10 Critical

CVSS2

Дефекты

CWE-200