A certain ActiveX control in WkImgSrv.dll 7.03.0616.0, as distributed in Microsoft Works 7 and Microsoft Office 2003 and 2007, allows remote attackers to execute arbitrary code or cause a denial of service (browser crash) via an invalid WksPictureInterface property value, which triggers an improper function call.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: mitre
Published: 2008-04-21T17:00:00
Updated: 2024-08-07T08:40:59.824Z
Reserved: 2008-04-21T00:00:00
Link: CVE-2008-1898
Vulnrichment
No data.
NVD
Status : Modified
Published: 2008-04-21T17:05:00.000
Modified: 2024-11-21T00:45:36.933
Link: CVE-2008-1898
Redhat
No data.