Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2008-4033

Cross-domain vulnerability in Microsoft XML Core Services 3.0 through 6.0, as used in Microsoft Expression Web, Office, Internet Explorer, and other products, allows remote attackers to obtain sensitive information from another domain and corrupt the session state via HTTP request header fields, as demonstrated by the Transfer-Encoding field, aka "MSXML Header Request Vulnerability."
Exploit prediction scoring system (EPSS) score
EPSS Score 0.584
EPSS Ranking 98.0%
CVSS Severity
CVSS v2 Score 4.3
References
Products affected by CVE-2008-4033


Contact Us

Shodan ® - All rights reserved