← All CVEs

CVE-2008-0082

high · 10

An ActiveX control (Messenger.UIAutomation.1) in Windows Messenger 4.7 and 5.1 is marked as safe-for-scripting, which allows remote attackers to control the Messenger application, and "change state," obtain contact information, and establish audio or video connections without notification via unknown vectors.

10
CVSS
34.4%
EPSS (exploit prob.)
98th
EPSS percentile
2008-08-13
Published

AV:N/AC:L/Au:N/C:C/I:C/A:C

Weaknesses

CWE-200

Affected products

VendorProductAffected versions
microsoftwindows_messenger4.7
microsoftwindows_messenger5.1

Check a specific version with /api/v1/cve/match.

References

Query this programmatically:

curl https://evil-db.io/api/v1/cve/CVE-2008-0082