CVE-2004-0210

CVE Published 2004-08-06
Related CWE(s) CWE-120: Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')
Related Vendor(s) microsoft, avaya
Related Product(s) interix, modular_messaging_message_storage_server, windows_2000, windows_nt
Exploitation Reported (CISA KEV) 2022-03-03
CVSS 3 Base Score 7.8 (HIGH)
CVSS 3 Attack Complexity LOW
CVSS 3 Attack Vector LOCAL

The POSIX component of Microsoft Windows NT and Windows 2000 allows local users to execute arbitrary code via certain parameters, possibly by modifying message length values and causing a buffer overflow.

Cyber Threat Graph Context

Explore how this CVE relates to the wider threat graph

Associated CAPEC Patterns

References