Memory Corruption Vulnerability in Microsoft Visual Basic and Visual FoxPro DataGrid Control
CVE-2008-4252

Currently unrated

Key Information:

Vendor
Microsoft
Vendor
CVE Published:
10 December 2008

Summary

The DataGrid ActiveX control present in Microsoft Visual Basic 6.0 and Visual FoxPro versions 8.0 and 9.0 is susceptible to a memory corruption issue that arises from improper error handling when accessing incorrectly initialized objects. This flaw can be exploited by remote attackers through specially crafted HTML documents that manipulate the system state, potentially enabling the execution of arbitrary code on the affected systems.

References

EPSS Score

64% chance of being exploited in the next 30 days.

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.