Lucene search

K
cveMitreCVE-2002-0700
HistoryApr 02, 2003 - 5:00 a.m.

CVE-2002-0700

2003-04-0205:00:00
mitre
web.nvd.nist.gov
26
cve-2002-0700
buffer overflow
microsoft content management server
code execution
local system context
authentication
web page
mdac
sql server compromise.

CVSS2

7.5

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:P/I:P/A:P

AI Score

7.8

Confidence

Low

EPSS

0.013

Percentile

86.3%

Buffer overflow in a system function that performs user authentication for Microsoft Content Management Server (MCMS) 2001 allows attackers to execute code in the Local System context by authenticating to a web page that calls the function, aka “Unchecked Buffer in MDAC Function Could Enable SQL Server Compromise.”

Affected configurations

Nvd
Node
microsoftcontent_management_serverMatch2001
OR
microsoftcontent_management_serverMatch2001sp1
VendorProductVersionCPE
microsoftcontent_management_server2001cpe:2.3:a:microsoft:content_management_server:2001:*:*:*:*:*:*:*
microsoftcontent_management_server2001cpe:2.3:a:microsoft:content_management_server:2001:sp1:*:*:*:*:*:*

CVSS2

7.5

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:P/I:P/A:P

AI Score

7.8

Confidence

Low

EPSS

0.013

Percentile

86.3%

Related for CVE-2002-0700