| Last Updated Date | Sep 02, 2008 |
| Release Date | Feb 15, 2008 |
| Severity | Medium |
| Impact | Information Disclosure: remote attackers can gain sensitive information from vulnerable systems. |
| Description | This indicates an attempt to exploit multiple information disclosure vulnerabilities in Microsoft Windows Live Messenger.
With the information that is disclosed, a malicious attacker can control the local Live Messenger. The exploit also reveals personal information from Live Messenger and makes it possible to transfer local audio and video information to a remote location. |
| Affected Products | Windows Messenger 4.7 Windows Messenger 5.1 |
| Recommended Actions | Refer to the vendor's web site for suggested workaround. http://www.microsoft.com/technet/security/Bulletin/08-050.mspx |
| Common Vulnerabilities and Exposures (CVE) | http://cve.mitre.org/cgi-bin/cvename.cgi?name=2008-0082
|
| Microsoft Bulletin ID | MS08-050 http://www.microsoft.com/technet/security/Bulletin/ms08-050.mspx |