PT-2008-1738 · Microsoft · Vbscript+2

Peter Ferrie

·

Publicado

2008-04-08

·

Atualizado

2018-10-12

·

CVE-2008-0083

CVSS v2.0

9.3

Alta

VetorAV:N/AC:M/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Microsoft Windows scripting engines versions 5.1 and 5.6
Description The issue is related to the improper decoding of script by the VBScript and JScript scripting engines. This allows remote attackers to execute arbitrary code via unknown vectors.
Recommendations For versions 5.1 and 5.6 of the scripting engines, update to a newer version that properly decodes script to prevent the execution of arbitrary code. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Code Injection

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2008-0083

Produtos afetados

Jscript
Vbscript
Windows Scripting Engine