CVE-2008-0083

Description

The (1) VBScript (VBScript.dll) and (2) JScript (JScript.dll) scripting engines 5.1 and 5.6, as used in Microsoft Windows 2000 SP4, XP SP2, and Server 2003 SP1 and SP2, do not properly decode script, which allows remote attackers to execute arbitrary code via unknown vectors.

Risk Information

Base Score
8.1
MODERATE
Vector
AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:N
EPSS Score
Exploitation Probability
59.309

Associated Vulnerability

VulnerabilityOS Platform
ms08-022: vulnerability in the vbscript and jscript scripting engines could allow remote code execution for Windows 2000 (KB944338)Windows
ms08-022: vulnerability in the vbscript and jscript scripting engines could allow remote code execution for Windows XP (KB944338)Windows
ms08-022: vulnerability in the vbscript and jscript scripting engines could allow remote code execution for Windows Server 2003 (KB944338)Windows
ms08-022: vulnerability in the vbscript and jscript scripting engines could allow remote code execution for Windows XP x64 Edition (KB944338)Windows

Patch Details

No records found

References

https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234