The search-ms protocol handler in Windows Explorer in Microsoft Windows Vista Gold and SP1 and Server 2008 uses untrusted parameter data obtained from incorrect parsing, which allows remote attackers to execute arbitrary code via a crafted HTML document, aka "Windows Search Parsing Vulnerability."
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: microsoft
Published: 2008-12-10T13:33:00
Updated: 2024-08-07T10:08:35.329Z
Reserved: 2008-09-25T00:00:00
Link: CVE-2008-4269
Vulnrichment
No data.
NVD
Status : Modified
Published: 2008-12-10T14:00:01.157
Modified: 2024-11-21T00:51:17.770
Link: CVE-2008-4269
Redhat
No data.