Lucene search

K
cve[email protected]CVE-2003-0469
HistoryAug 07, 2003 - 4:00 a.m.

CVE-2003-0469

2003-08-0704:00:00
web.nvd.nist.gov
43
cve-2003-0469
buffer overflow
html converter
windows os
remote code execution
denial of service
internet explorer 5.0

7.5 High

CVSS2

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:P/I:P/A:P

7.8 High

AI Score

Confidence

High

0.156 Low

EPSS

Percentile

96.0%

Buffer overflow in the HTML Converter (HTML32.cnv) on various Windows operating systems allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via cut-and-paste operation, as demonstrated in Internet Explorer 5.0 using a long “align” argument in an HR tag.

Affected configurations

NVD
Node
microsoftwindows_2000
OR
microsoftwindows_2003_serverMatch64-bit
OR
microsoftwindows_2003_serverMatchr2
OR
microsoftwindows_98gold
OR
microsoftwindows_98se
OR
microsoftwindows_me
OR
microsoftwindows_ntMatch4.0server
OR
microsoftwindows_ntMatch4.0terminal_server
OR
microsoftwindows_xp64-bit
OR
microsoftwindows_xpgold

7.5 High

CVSS2

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:P/I:P/A:P

7.8 High

AI Score

Confidence

High

0.156 Low

EPSS

Percentile

96.0%