← Back

CVE-2008-1898

nvd nist
Published: Apr 21, 2008Modified: Apr 23, 2026

JSON object

Loading...
9.3
Vector
AV:N/AC:M/Au:N/C:C/I:C/A:C
Exploitability: 8.6 / Impact: 10.0
Source: NVD

Description

A certain ActiveX control in WkImgSrv.dll 7.03.0616.0, as distributed in Microsoft Works 7 and Microsoft Office 2003 and 2007, allows remote attackers to execute arbitrary code or cause a denial of service (browser crash) via an invalid WksPictureInterface property value, which triggers an improper function call.

Affected (3)

Products: Microsoft: Office, Works
2 products
Office
Works
Configuration A
3 vulnerable
Vulnerable SoftwareAffected Versions
Microsoft
Version 2003
Version 2007
Version 7.0

Timeline

No history available yet.