Unrated severityNVD Advisory· Published Oct 2, 2008· Updated Jun 16, 2026
CVE-2008-4381
CVE-2008-4381
Description
Microsoft Internet Explorer 7 allows remote attackers to cause a denial of service (application crash) via Javascript that calls the alert function with a URL-encoded string of a large number of invalid characters.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
4cpe:2.3:a:microsoft:internet_explorer:5:*:*:*:*:*:*:*+ 3 more
- cpe:2.3:a:microsoft:internet_explorer:5:*:*:*:*:*:*:*
- cpe:2.3:a:microsoft:internet_explorer:6:*:*:*:*:*:*:*
- cpe:2.3:a:microsoft:internet_explorer:7:*:*:*:*:*:*:*
- (no CPE)range: 7
Patches
Vulnerability mechanics
References
6- securityreason.com/securityalert/4345nvd
- www.openwall.com/lists/oss-security/2008/10/03/7nvd
- www.openwall.com/lists/oss-security/2008/10/03/8nvd
- www.securityfocus.com/archive/1/496830/100/0/threadednvd
- www.securityfocus.com/archive/1/496926/100/0/threadednvd
- exchange.xforce.ibmcloud.com/vulnerabilities/45639nvd
News mentions
0No linked articles in our index yet.