Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2008-4800

Опубликовано: 31 окт. 2008
Источник: nvd
CVSS2: 5
EPSS Средний

Описание

The DebugDiag ActiveX control in CrashHangExt.dll, possibly 1.0, in Microsoft Debug Diagnostic Tool allows remote attackers to cause a denial of service (NULL pointer dereference and Internet Explorer 6.0 crash) via a large negative integer argument to the GetEntryPointForThread method. NOTE: this issue might only be exploitable in limited environments or non-default browser settings.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:microsoft:debug_diagnostic_tool:*:*:*:*:*:*:*:*

EPSS

Процентиль: 96%
0.22016
Средний

5 Medium

CVSS2

Дефекты

CWE-399

Связанные уязвимости

github
больше 3 лет назад

The DebugDiag ActiveX control in CrashHangExt.dll, possibly 1.0, in Microsoft Debug Diagnostic Tool allows remote attackers to cause a denial of service (NULL pointer dereference and Internet Explorer 6.0 crash) via a large negative integer argument to the GetEntryPointForThread method. NOTE: this issue might only be exploitable in limited environments or non-default browser settings.

EPSS

Процентиль: 96%
0.22016
Средний

5 Medium

CVSS2

Дефекты

CWE-399