[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

249966

 
 

909

 
 

195636

 
 

282

Paid content will be excluded from the download.


Download | Alert*
CVE
view JSON

CVE-2003-0528Date: (C)2003-09-17   (M)2023-12-22


Heap-based buffer overflow in the Distributed Component Object Model (DCOM) interface in the RPCSS Service allows remote attackers to execute arbitrary code via a malformed RPC request with a long filename parameter, a different vulnerability than CVE-2003-0352 (Blaster/Nachi) and CVE-2003-0715.

CVSS Score and Metrics +CVSS Score and Metrics -

CVSS V2 Severity:
CVSS Score : 10.0
Exploit Score: 10.0
Impact Score: 10.0
 
CVSS V2 Metrics:
Access Vector: NETWORK
Access Complexity: LOW
Authentication: NONE
Confidentiality: COMPLETE
Integrity: COMPLETE
Availability: COMPLETE
  
Reference:
http://archives.neohapsis.com/archives/vulnwatch/2003-q3/0100.html
http://marc.info/?l=bugtraq&m=106407417011430&w=2
CA-2003-23
MS03-039
VU#254236
http://www.nsfocus.com/english/homepage/research/0306.htm

CPE    38
cpe:/o:microsoft:windows_nt:4.0:sp6:server
cpe:/o:microsoft:windows_nt:4.0:sp4:server
cpe:/o:microsoft:windows_nt:4.0:sp5:server
cpe:/o:microsoft:windows_nt:4.0:sp3:server
...
OVAL    4
oval:org.mitre.oval:def:2968
oval:org.mitre.oval:def:2884
oval:org.mitre.oval:def:127
oval:org.mitre.oval:def:3966
...

© SecPod Technologies