Memory Corruption Vulnerability in Microsoft Visual Basic and Visual FoxPro DataGrid Control
CVE-2008-4252
Currently unrated
Key Information:
- Vendor
- Microsoft
- Vendor
- CVE Published:
- 10 December 2008
Summary
The DataGrid ActiveX control present in Microsoft Visual Basic 6.0 and Visual FoxPro versions 8.0 and 9.0 is susceptible to a memory corruption issue that arises from improper error handling when accessing incorrectly initialized objects. This flaw can be exploited by remote attackers through specially crafted HTML documents that manipulate the system state, potentially enabling the execution of arbitrary code on the affected systems.
References
EPSS Score
64% chance of being exploited in the next 30 days.
Timeline
Vulnerability published
Vulnerability Reserved