AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2008-4029

MEDIUM · CVSS 4.3 EPSS 26.74%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2008-11-12 · Last synced 2026-08-04

CyberRota Analysis

AI analysis pending.

CVE
CVE-2008-4029
Severity
MEDIUM
CVSS
4.3
EPSS
26.74%
Microsoft

Original NVD Description

Cross-domain vulnerability in Microsoft XML Core Services 3.0 and 4.0, as used in Internet Explorer, allows remote attackers to obtain sensitive information from another domain via a crafted XML document, related to improper error checks for external DTDs, aka "MSXML DTD Cross-Domain Scripting Vulnerability."