Vulnerability Name: CVE-2008-1086 (CCN-41464) Assigned: 2008-04-08 Published: 2008-04-08 Updated: 2021-07-23 Summary: The HxTocCtrl ActiveX control (hxvz.dll), as used in Microsoft Internet Explorer 5.01 SP4 and 6 SP1, in Windows XP SP2, Server 2003 SP1 and SP2, Vista SP1, and Server 2008, allows remote attackers to execute arbitrary code via malformed arguments, which triggers memory corruption. CVSS v3 Severity: 10.0 Critical (CCN CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H )Exploitability Metrics: Attack Vector (AV): NetworkAttack Complexity (AC): LowPrivileges Required (PR): NoneUser Interaction (UI): NoneScope: Scope (S): ChangedImpact Metrics: Confidentiality (C): HighIntegrity (I): HighAvailibility (A): High
CVSS v2 Severity: 9.3 High (CVSS v2 Vector: AV:N/AC:M/Au:N/C:C/I:C/A:C )6.9 Medium (Temporal CVSS v2 Vector: AV:N/AC:M/Au:N/C:C/I:C/A:C/E:U/RL:OF/RC:C )Exploitability Metrics: Access Vector (AV): NetworkAccess Complexity (AC): MediumAuthentication (Au): NoneImpact Metrics: Confidentiality (C): CompleteIntegrity (I): CompleteAvailibility (A): Complete
9.3 High (CCN CVSS v2 Vector: AV:N/AC:M/Au:N/C:C/I:C/A:C )6.9 Medium (CCN Temporal CVSS v2 Vector: AV:N/AC:M/Au:N/C:C/I:C/A:C/E:U/RL:OF/RC:C )Exploitability Metrics: Access Vector (AV): NetworkAccess Complexity (AC): MediumAthentication (Au): NoneImpact Metrics: Confidentiality (C): CompleteIntegrity (I): CompleteAvailibility (A): Complete
Vulnerability Type: CWE-94 Vulnerability Consequences: Gain Access References: Source: MITRE Type: CNACVE-2008-1086 Source: CCN Type: HP Security Bulletin HPSBST02329 SSRT080048 rev.1
HPSBST02329 SSRT080048 rev.1Storage Management Appliance (SMA), Microsoft Patch Applicability MS08-018 to MS08-025 Source: IDEFENSE Type: Third Party Advisory20080408 Microsoft HxTocCtrl ActiveX Control Invalid Param Heap Corruption Vulnerability Source: HP Type: Mailing ListSSRT080048 Source: CCN Type: SA29714Microsoft Windows hxvz.dll ActiveX Control Memory Corruption Source: SECUNIA Type: Vendor Advisory29714 Source: CCN Type: SECTRACK ID: 1019800Microsoft Internet Explorer 'hxvz.dll' ActiveX Control Lets Remote Users Execute Arbitrary Code Source: CCN Type: ASA-2008-160MS08-023 Security Update of ActiveX Kill Bits (948881) Source: CCN Type: ASA-2008-161MS08-024 Cumulative Security Update for Internet Explorer (947864) Source: CCN Type: NORTEL BULLETIN ID: 2008008772, Rev 1Nortel Response to Microsoft Security Bulletin MS08-023 Source: CCN Type: NORTEL BULLETIN ID: 2008008788, Rev 1Centrex IP Client Manager (CICM) response to Microsoft April security bulletin Source: CCN Type: Microsoft Security Bulletin MS11-090Cumulative Security Update of ActiveX Kill Bits (2618451) Source: CCN Type: Microsoft Security Bulletin MS08-023Security Update of ActiveX Kill Bits (948881) Source: CCN Type: Microsoft Security Bulletin MS08-032Cumulative Security Update of ActiveX Kill Bits (950760) Source: CCN Type: Microsoft Security Bulletin MS09-032Cumulative Security Update of ActiveX Kill Bits (973346) Source: CCN Type: Microsoft Security Bulletin MS09-055Cumulative Security Update of ActiveX Kill Bits (973525) Source: CCN Type: Microsoft Security Bulletin MS10-008Cumulative Security Update of ActiveX Kill Bits (978262) Source: CCN Type: Microsoft Security Bulletin MS10-034Cumulative Security Update of ActiveX Kill Bits (980195) Source: CCN Type: Microsoft Security Bulletin MS11-027Cumulative Security Update of ActiveX Kill Bits (2508272) Source: BID Type: Patch28606 Source: CCN Type: BID-28606Microsoft 'hxvz.dll' ActiveX Control Memory Corruption Vulnerability Source: SECTRACK Type: Third Party Advisory, VDB Entry1019800 Source: CERT Type: Third Party Advisory, US Government ResourceTA08-099A Source: VUPEN Type: Broken LinkADV-2008-1147 Source: MS Type: UNKNOWNMS08-023 Source: XF Type: UNKNOWNie-hxvz-code-execution(41464) Source: XF Type: UNKNOWNie-hxvz-code-execution(41464) Source: CCN Type: iDefense Labs PUBLIC ADVISORY: 04.08.08Microsoft HxTocCtrl ActiveX Control Invalid Param Heap Corruption Vulnerability Source: OVAL Type: UNKNOWNoval:org.mitre.oval:def:5475 Vulnerable Configuration: Configuration 1 :cpe:/o:microsoft:windows_2000:*:sp4:*:*:*:*:*:* AND cpe:/a:microsoft:internet_explorer:5.01:sp4:*:*:*:*:*:* OR cpe:/a:microsoft:internet_explorer:6:sp1:*:*:*:*:*:* Configuration 2 :cpe:/o:microsoft:windows-nt:2008:*:itanium:*:*:*:*:* OR cpe:/o:microsoft:windows-nt:2008:*:x32:*:*:*:*:* OR cpe:/o:microsoft:windows_2003_server:*:sp2:x64:*:*:*:*:* OR cpe:/o:microsoft:windows_vista:*:*:x64:*:*:*:*:* OR cpe:/o:microsoft:windows_xp:*:*:x64:*:*:*:*:* OR cpe:/o:microsoft:windows-nt:2008:*:x64:*:*:*:*:* OR cpe:/o:microsoft:windows_2003_server:*:*:x64:*:*:*:*:* OR cpe:/o:microsoft:windows_xp:*:sp2:*:*:*:*:*:* OR cpe:/o:microsoft:windows_xp:*:sp2:x64:*:*:*:*:* OR cpe:/o:microsoft:windows_2003_server:*:sp1:*:*:*:*:*:* OR cpe:/o:microsoft:windows_2003_server:*:sp1:itanium:*:*:*:*:* OR cpe:/o:microsoft:windows_2003_server:*:sp2:*:*:*:*:*:* OR cpe:/o:microsoft:windows_2003_server:*:sp2:itanium:*:*:*:*:* Configuration CCN 1 :cpe:/a:microsoft:ie:6.0:sp1:*:*:*:*:*:* OR cpe:/a:microsoft:internet_explorer:5.01:sp4:*:*:*:*:*:* OR cpe:/o:microsoft:windows_2000:-:sp4:*:*:*:*:*:* OR cpe:/o:microsoft:windows:2003_server::x64:*:*:*:*:* OR cpe:/o:microsoft:windows:xp:sp2:*:*:*:*:*:* OR cpe:/o:microsoft:windows:2003_server:sp1:*:*:*:*:*:* OR cpe:/o:microsoft:windows:2003_server:sp1_itanium:*:*:*:*:*:* OR cpe:/o:microsoft:windows_vista:*:*:*:*:*:*:*:* OR cpe:/o:microsoft:windows:server_2003:sp2:*:*:*:*:*:* OR cpe:/o:microsoft:windows:server_2003:sp2:itanium:*:*:*:*:* OR cpe:/o:microsoft:windows:server_2003:sp2:x64:*:*:*:*:* OR cpe:/o:microsoft:windows_vista:-:*:x64:*:*:*:*:* OR cpe:/o:microsoft:windows_xp::sp2:x64:*:professional:*:*:* OR cpe:/o:microsoft:windows_vista:-:sp1:*:*:*:*:*:* OR cpe:/o:microsoft:windows_vista:-:sp1:x64:*:*:*:*:* OR cpe:/o:microsoft:windows_server_2008:*:*:*:*:*:*:itanium:* OR cpe:/o:microsoft:windows_server_2008:*:*:*:*:*:*:x64:* OR cpe:/o:microsoft:windows_server_2008:*:*:*:*:*:*:*:* Denotes that component is vulnerable
Oval Definitions BACK
microsoft windows 2000 * sp4
microsoft internet explorer 5.01 sp4
microsoft internet explorer 6 sp1
microsoft windows-nt 2008
microsoft windows-nt 2008
microsoft windows 2003 server * sp2
microsoft windows vista *
microsoft windows xp *
microsoft windows-nt 2008
microsoft windows 2003 server *
microsoft windows xp * sp2
microsoft windows xp * sp2
microsoft windows 2003 server * sp1
microsoft windows 2003 server * sp1
microsoft windows 2003 server * sp2
microsoft windows 2003 server * sp2
microsoft ie 6.0 sp1
microsoft ie 5.01 sp4
microsoft windows 2000 - sp4
microsoft windows 2003_server
microsoft windows xp sp2
microsoft windows 2003_server sp1
microsoft windows 2003_server sp1_itanium
microsoft windows vista *
microsoft windows server_2003 sp2
microsoft windows server_2003 sp2
microsoft windows server_2003 sp2
microsoft windows vista -
microsoft windows xp sp2
microsoft windows vista - sp1
microsoft windows vista - sp1
microsoft windows server 2008 -
microsoft windows server 2008 -
microsoft windows server 2008 *