← All CVEs

CVE-2008-1437

medium · 5

Unspecified vulnerability in Microsoft Malware Protection Engine (mpengine.dll) 1.1.3520.0 and 0.1.13.192, as used in multiple Microsoft products, allows context-dependent attackers to cause a denial of service (engine hang and restart) via a crafted file, a different vulnerability than CVE-2008-1438.

5
CVSS
12.9%
EPSS (exploit prob.)
96th
EPSS percentile
2008-05-13
Published

AV:N/AC:L/Au:N/C:N/I:N/A:P

Weaknesses

CWE-399

Affected products

VendorProductAffected versions
microsoftantigen_for_exchangeall versions
microsoftantigen_for_smtp_gatewayall versions
microsoftdiagnostics_and_recovery_toolkit6.0
microsoftforefront_client_securityall versions
microsoftforefront_security_for_exchange_serverall versions
microsoftforefront_security_for_sharepointall versions
microsoftmalware_protection_engine0.1.13.192
microsoftmalware_protection_engine1.1.3520.0
microsoftwindows_defenderall versions
microsoftwindows_live_onecareall versions

Check a specific version with /api/v1/cve/match.

References

Query this programmatically:

curl https://evil-db.io/api/v1/cve/CVE-2008-1437