CVE-2008-0077

Description

Use-after-free vulnerability in Microsoft Internet Explorer 6 SP1, 6 SP2, and and 7 allows remote attackers to execute arbitrary code by assigning malformed values to certain properties, as demonstrated using the by property of an animateMotion SVG element, aka Property Memory Corruption Vulnerability.

Risk Information

Base Score
8.8
MODERATE
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
EPSS Score
Exploitation Probability
63.018

Associated Vulnerability

VulnerabilityOS Platform
Cumulative Security Update for Internet Explorer 5.01 Service Pack 4 (KB944533)Windows
Cumulative Security Update for Internet Explorer 6 SP1 (KB944533)Windows
Cumulative Security Update for Internet Explorer for Windows XP (KB944533)Windows
Cumulative Security Update for Internet Explorer for Windows Server 2003 (KB944533)Windows
Cumulative Security Update for Internet Explorer 7 for Windows XP (KB944533)Windows
Cumulative Security Update for Internet Explorer 7 for Windows Server 2003 (KB944533)Windows
Cumulative Security Update for Internet Explorer 7 in Windows Vista (KB944533)Windows
Cumulative Security Update for Internet Explorer 7 for Windows Server 2003 x64 Edition (KB944533)Windows
Cumulative Security Update for Internet Explorer for Windows XP x64 Edition (KB944533)Windows
Cumulative Security Update for Internet Explorer for Windows Server 2003 x64 Edition (KB944533)Windows
Cumulative Security Update for Internet Explorer 7 for Windows Server 2003 x64 Edition (KB944533)Windows
Cumulative Security Update for Internet Explorer 7 for Windows Server 2003 x64 Edition (KB944533) for SP2Windows
Cumulative Security Update for Internet Explorer 7 in Windows Vista x64 Edition (KB944533)Windows

Patch Details

Click to see the patches provided by ManageEngine for this CVE
Patch IDPatch Description
PATCH-5510Cumulative Security Update for Internet Explorer for Windows Server 2003 x64 Edition (KB944533)

References

https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234