New Search

FlexGrid Control Memory Corruption Vulnerability

oval:org.mitre.oval:def:5994

The FlexGrid ActiveX control in Microsoft Visual Basic 6.0 Visual FoxPro 8.0 SP1 and 9.0 SP1 and SP2 Office FrontPage 2002 SP3 and Office Project 2003 SP3 does not properly handle errors during access to incorrectly initialized objects which allows remote attackers to execute arbitrary code via a crafted HTML document related to corruption of the "system state" aka "FlexGrid Control Memory Corruption Vulnerability."

Family:
windows
Status:
ACCEPTED
Platform(s):
  • Microsoft Windows Vista
  • Microsoft Windows Server 2003
  • Microsoft Windows XP
  • Microsoft Windows Server 2008
  • Microsoft Windows 2000
Class:
vulnerability
Reference(s):
  • CVE-2008-4253
Product(s):
  • Microsoft Project 2003
  • Microsoft Visual Basic 6.0