CyberSec.Space Logo
返回 CVE 浏览器

CVE-2008-3460

CRITICAL
9.3
CVSS Severity Score
EPSS Score0.1510%
EPSS Percentile32.05th
Published2008年8月12日
Last Modified2026年4月23日

Vulnerability Description

WPGIMP32.FLT in Microsoft Office 2000 SP3, XP SP3, and 2003 SP2; Office Converter Pack; and Works 8 does not properly parse the length of a WordPerfect Graphics (WPG) file, which allows remote attackers to execute arbitrary code via a crafted WPG file, aka the "WPG Image File Heap Corruption Vulnerability."

Affected Platforms (CPE)

📦
Microsoft

Office

= 2000
📦
Microsoft

Office

= 2003
📦
Microsoft

Office

= xp
📦
Microsoft

Office Converter Pack

All versions
📦
Microsoft

Works

= 8.0

References & Advisories

相关漏洞威胁