Back to search
CVE-2008-1456
Published: Aug 13, 2008
Modified: Aug 7, 2024
PUBLISHED
Description
Array index vulnerability in the Event System in Microsoft Windows 2000 SP4, XP SP2 and SP3, Server 2003 SP1 and SP2, Vista Gold and SP1, and Server 2008 allows remote authenticated users to execute arbitrary code via a crafted event subscription request that is used to access an array of function pointers.
| Vendor | Product | Versions |
|---|---|---|
n/a | n/a | affected n/a |
References
ADV-2008-2353
vdb-entry
x_refsource_VUPEN
TA08-225A
third-party-advisory
x_refsource_CERT
1020677
vdb-entry
x_refsource_SECTRACK
HPSBST02360
vendor-advisory
x_refsource_HP
MS08-049
vendor-advisory
x_refsource_MS
SSRT080117
vendor-advisory
x_refsource_HP
30586
vdb-entry
x_refsource_BID
31417
third-party-advisory
x_refsource_SECUNIA
oval:org.mitre.oval:def:5630
vdb-entry
signature
x_refsource_OVAL
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now