Vulnerability Details CVE-2008-4922
Buffer overflow in the DjVu ActiveX Control 3.0 for Microsoft Office (DjVu_ActiveX_MSOffice.dll) allows remote attackers to execute arbitrary code via a long (1) ImageURL property, and possibly the (2) Mode, (3) Page, or (4) Zoom properties.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.671
EPSS Ranking 98.4%
CVSS Severity
CVSS v2 Score 9.3
Products affected by CVE-2008-4922
-
cpe:2.3:a:djvu:activex_control_for_microsoft_office_2000:*
-
cpe:2.3:a:microsoft:office:2000