PT-2008-2686 · Microsoft · Office Project

Published

2008-04-08

·

Updated

2018-10-12

·

CVE-2008-1088

CVSS v2.0

9.3

High

VectorAV:N/AC:M/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Microsoft Project versions 2000 Service Release 1, 2002 SP1, 2003 SP2
Description The issue allows user-assisted remote attackers to execute arbitrary code via a crafted Project file, related to improper validation of memory resource allocations.
Recommendations For Microsoft Project 2000 Service Release 1, 2002 SP1, and 2003 SP2, at the moment, there is no information about a newer version that contains a fix for this vulnerability.
Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2008-1088

Affected Products

Office Project