CVE-2008-4256: High severity microsoft office frontpage vulnerability
The Charts ActiveX control in Microsoft Visual Basic 6.0, Visual Studio .NET 2002 SP1 and 2003 SP1, and Visual FoxPro 8.0 SP1 and 9.0 SP1 and SP2 does not properly handle errors during access to incorrectly initialized objects, which allows remote attackers to execute arbitrary code via a crafted HTML document, related to corruption of the "system state," aka "Charts Control Memory Corruption Vulnerability."
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2008-4256?
CVE-2008-4256 is rated as critical due to its potential to allow remote code execution.
How do I fix CVE-2008-4256?
To fix CVE-2008-4256, update to the latest security patch provided by Microsoft for the affected software versions.
Which software is affected by CVE-2008-4256?
CVE-2008-4256 affects Microsoft Visual Basic 6.0, Visual Studio .NET 2002 SP1 and 2003 SP1, and Visual FoxPro 8.0 SP1 and 9.0 SP1 and SP2.
What type of vulnerability is CVE-2008-4256?
CVE-2008-4256 is a remote code execution vulnerability caused by improper handling of incorrectly initialized objects.
Who can exploit CVE-2008-4256?
Remote attackers can exploit CVE-2008-4256 through crafted HTML content targeting the affected applications.