Lucene search

K
cve[email protected]CVE-2005-0551
HistoryMay 02, 2005 - 4:00 a.m.

CVE-2005-0551

2005-05-0204:00:00
web.nvd.nist.gov
24
cve-2005-0551
buffer overflow
winsrv.dll
csrss
windows 2000
windows xp
windows server 2003
privilege escalation

10 High

CVSS2

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:C/I:C/A:C

6.6 Medium

AI Score

Confidence

High

0.012 Low

EPSS

Percentile

85.0%

Stack-based buffer overflow in WINSRV.DLL in the Client Server Runtime System (CSRSS) process of Microsoft Windows 2000, Windows XP SP1 and SP2, and Windows Server 2003 allows local users to gain privileges via a specially-designed application that provides console window information with a long FaceName value.

Affected configurations

NVD
Node
microsoftwindows_2000
OR
microsoftwindows_2003_serverMatchr2
OR
microsoftwindows_xpsp1tablet_pc
OR
microsoftwindows_xpsp2tablet_pc

10 High

CVSS2

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:C/I:C/A:C

6.6 Medium

AI Score

Confidence

High

0.012 Low

EPSS

Percentile

85.0%