Skip to content
CISA Adds Windows Video ActiveX Control RCE Flaw to KEV Catalog Following Active Exploitation

CISA Adds Windows Video ActiveX Control RCE Flaw to KEV Catalog Following Active Exploitation

Cybersecuritynews •Abinaya • February 18, 2026

A long-dormant Microsoft Windows vulnerability, CVE-2008-0015, has been added to the Known Exploited Vulnerabilities (KEV) catalog following evidence of active exploitation in the wild. The flaw, first disclosed more than a decade ago, impacts the Windows Video ActiveX Control component and poses a serious Remote Code Execution (RCE) risk. According to CISA, attackers are exploiting the vulnerability by leveraging maliciously […]

Extracted Entities

Attack Types (1)

CVEs (1)

Platforms (1)