AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2008-4299

MEDIUM · CVSS 5 EPSS 15.86%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2008-09-29 · Last synced 2026-08-04

CyberRota Analysis

AI analysis pending.

CVE
CVE-2008-4299
Severity
MEDIUM
CVSS
5
EPSS
15.86%
Microsoft

Original NVD Description

A certain ActiveX control in the Microsoft Internet Authentication Service (IAS) Helper COM Component in iashlpr.dll allows remote attackers to cause a denial of service (browser crash) via a large integer value in the first argument to the PutProperty method. NOTE: this issue was disclosed by an unreliable researcher, so it might be incorrect.