CVE Database
/

CVE-2008-1456

Back to search

CVE-2008-1456

Published: Aug 13, 2008

Modified: Aug 7, 2024

PUBLISHED

Description

Array index vulnerability in the Event System in Microsoft Windows 2000 SP4, XP SP2 and SP3, Server 2003 SP1 and SP2, Vista Gold and SP1, and Server 2008 allows remote authenticated users to execute arbitrary code via a crafted event subscription request that is used to access an array of function pointers.

VendorProductVersions

n/a

n/a

affected
n/a

References

ADV-2008-2353
vdb-entry
x_refsource_VUPEN
TA08-225A
third-party-advisory
x_refsource_CERT
1020677
vdb-entry
x_refsource_SECTRACK
HPSBST02360
vendor-advisory
x_refsource_HP
MS08-049
vendor-advisory
x_refsource_MS
SSRT080117
vendor-advisory
x_refsource_HP
30586
vdb-entry
x_refsource_BID
31417
third-party-advisory
x_refsource_SECUNIA
oval:org.mitre.oval:def:5630
vdb-entry
signature
x_refsource_OVAL

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now