CVE-2008-1435

Windows Explorer in Microsoft Windows Vista up to SP1, and Server 2008, allows user-assisted remote attackers to execute arbitrary code via crafted saved-search (.search-ms) files that are not properly handled when saving, aka "Windows Saved Search Vulnerability."
Configurations

Configuration 1 (hide)

OR cpe:2.3:o:microsoft:windows-nt:2008:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows_vista:*:*:*:*:*:*:*:*

History

No history.

Information

Published : 2008-07-08 23:41

Updated : 2023-12-10 10:51


NVD link : CVE-2008-1435

Mitre link : CVE-2008-1435

CVE.ORG link : CVE-2008-1435


JSON object : View

Products Affected

microsoft

  • windows-nt
  • windows_vista
CWE
CWE-94

Improper Control of Generation of Code ('Code Injection')