CVE-2008-4250
Microsoft Windows Buffer Overflow Vulnerability
9.8
CVSS 3.1
98.8 %
EPSS (current)
2026-05-20
KEV addition
No
Ransomware
Timeline
Publication, first public exploit and KEV addition on a day axis.
Key facts
Vendor / product: Microsoft / Windows
Published: 2008-10-23 · Due (CISA): 2026-06-03
CWE: CWE-94 · EU list: no
Exploit references (metadata only)
| Source | Reference | Title | Date |
|---|---|---|---|
| exploitdb | 6824 | Microsoft Windows Server - Code Execution (PoC) (MS08-067) | 2008-10-23 |
| exploitdb | 6841 | Microsoft Windows Server - Universal Code Execution (MS08-067) | 2008-10-26 |
| metasploit | exploit/windows/smb/ms08_067_netapi | exploit/windows/smb/ms08_067_netapi | 2008-10-28 |
| exploitdb | 7104 | Microsoft Windows Server - Code Execution (MS08-067) | 2008-11-12 |
| exploitdb | 7132 | Microsoft Windows Server 2000/2003 - Code Execution (MS08-067) | 2008-11-16 |
| exploitdb | 16362 | Microsoft Windows Server - Service Relative Path Stack Corruption (MS08-067) (Metasploit) | 2011-01-21 |
| exploitdb | 40279 | Microsoft Windows - 'NetAPI32.dll' Code Execution (Python) (MS08-067) | 2016-02-26 |
References only — no downloads or instructions.