VYPR
Unrated severityNVD Advisory· Published Apr 8, 2008· Updated Apr 23, 2026

CVE-2008-1088

CVE-2008-1088

Description

Microsoft Project 2000 Service Release 1, 2002 SP1, and 2003 SP2 allows user-assisted remote attackers to execute arbitrary code via a crafted Project file, related to improper validation of "memory resource allocations."

Affected products

3
  • Microsoft/Project3 versions
    cpe:2.3:a:microsoft:project:2000:sr1:*:*:*:*:*:*+ 2 more
    • cpe:2.3:a:microsoft:project:2000:sr1:*:*:*:*:*:*
    • cpe:2.3:a:microsoft:project:2002:sp1:*:*:*:*:*:*
    • cpe:2.3:a:microsoft:project:2003:sp2:*:*:*:*:*:*

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

10

News mentions

0

No linked articles in our index yet.