CVE-2008-2244

Description

Microsoft Office Word 2002 SP3 allows remote attackers to execute arbitrary code via a .doc file that contains malformed data, as exploited in the wild in July 2008, and as demonstrated by attachement.doc.

Risk Information

Base Score
8.8
MODERATE
Vector
AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
EPSS Score
Exploitation Probability
59.834

Associated Vulnerability

VulnerabilityOS Platform
Security Update for Microsoft Office Word 2003 (KB954464)Windows
Security Update for Microsoft Office Word 2003 (KB954464) for SP2Windows
Security Update for Microsoft Office Word 2003 (KB954464) for SP3Windows

Patch Details

No records found

References

https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234