Vulnerabilities > CVE-2008-2752 - Resource Management Errors vulnerability in Microsoft Word 2000/2003

047910
CVSS 7.1 - HIGH
Attack vector
NETWORK
Attack complexity
MEDIUM
Privileges required
NONE
Confidentiality impact
NONE
Integrity impact
NONE
Availability impact
COMPLETE
network
microsoft
CWE-399
exploit available

Summary

Microsoft Word 2000 9.0.2812 and 2003 11.8106.8172 does not properly handle unordered lists, which allows user-assisted remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via a crafted .doc file. NOTE: some of these details are obtained from third party information.

Vulnerable Configurations

Part Description Count
Application
Microsoft
9

Common Weakness Enumeration (CWE)

Exploit-Db

descriptionMicrosoft Word 2000/2002 Bulleted List Handling Remote Memory Corruption Vulnerability. CVE-2008-2752. Dos exploit for windows platform
idEDB-ID:31934
last seen2016-02-03
modified2008-06-17
published2008-06-17
reporterIvan Sanchez
sourcehttps://www.exploit-db.com/download/31934/
titleMicrosoft Word 2000/2002 - Bulleted List Handling Remote Memory Corruption Vulnerability