CVE-2008-1088: Critical severity microsoft project 2010 vulnerability
Microsoft Project 2000 Service Release 1, 2002 SP1, and 2003 SP2 allows user-assisted remote attackers to execute arbitrary code via a crafted Project file, related to improper validation of "memory resource allocations."
Affected Software
Remediation
Patch Available
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2008-1088?
CVE-2008-1088 has a medium severity rating due to the potential for remote code execution via malicious Project files.
How do I fix CVE-2008-1088?
To fix CVE-2008-1088, ensure that you apply the latest security updates and patches provided by Microsoft for Project 2000, 2002, and 2003.
What versions of Microsoft Project are affected by CVE-2008-1088?
CVE-2008-1088 affects Microsoft Project 2000 Service Release 1, 2002 SP1, and 2003 SP2.
What type of vulnerability is CVE-2008-1088?
CVE-2008-1088 is a remote code execution vulnerability caused by improper validation of memory resource allocations.
Can CVE-2008-1088 be exploited without user interaction?
CVE-2008-1088 requires user interaction, as it is user-assisted and relies on the victim opening a crafted Project file.