Vulnerabilities > CVE-2008-5823 - Numeric Errors vulnerability in Microsoft Money 2006

047910
CVSS 4.3 - MEDIUM
Attack vector
NETWORK
Attack complexity
MEDIUM
Privileges required
NONE
Confidentiality impact
NONE
Integrity impact
NONE
Availability impact
PARTIAL

Summary

An ActiveX control in prtstb06.dll in Microsoft Money 2006, when used with WScript in Windows Script Host (WSH) on Windows Vista, allows remote attackers to cause a denial of service (access violation and application crash) via a zero value for the Startup property.

Vulnerable Configurations

Part Description Count
Application
Microsoft
1
OS
Microsoft
2

Common Weakness Enumeration (CWE)