Lucene search

K
cve[email protected]CVE-2008-3479
HistoryOct 15, 2008 - 12:12 a.m.

CVE-2008-3479

2008-10-1500:12:15
CWE-20
web.nvd.nist.gov
25
cve-2008-3479
security vulnerability
buffer overflow
msmq
remote code execution
windows 2000
nvd

10 High

CVSS2

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:C/I:C/A:C

7.9 High

AI Score

Confidence

Low

0.878 High

EPSS

Percentile

98.7%

Heap-based buffer overflow in the Microsoft Message Queuing (MSMQ) service (mqsvc.exe) in Microsoft Windows 2000 SP4 allows remote attackers to read memory contents and execute arbitrary code via a crafted RPC call, related to improper processing of parameters to string APIs, aka β€œMessage Queuing Service Remote Code Execution Vulnerability.”

Affected configurations

NVD
Node
microsoftwindows_2000sp4

10 High

CVSS2

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:C/I:C/A:C

7.9 High

AI Score

Confidence

Low

0.878 High

EPSS

Percentile

98.7%