VDB

CVE-2003-0717

CVE-2003-0717 PUBLISHED CVSS 7.5 HIGH

The Messenger Service for Windows NT through Server 2003 does not properly verify the length of the message, which allows remote attackers to execute arbitrary code via a buffer overflow attack.

EPSS 85.76% · 99.4th percentile

Risk Scores

CVSS 2.0
7.5
EPSS Score
85.76%
99.4th percentile

Affected Products

VendorProductVersions
microsoftwindows_2003_serverr2, standard, web
microsoftwindows_2000
microsoftwindows_me
microsoftwindows_nt4.0, 4.0, 4.0
n/an/a*
microsoftwindows_xp

Timeline

  • Oct 17, 2003 CVE Published
  • Sep 23, 2010 PoC Published
  • Feb 4, 2022 EPSS Score
  • May 20, 2022 EPSS Score
  • Jul 12, 2022 EPSS Score
  • Oct 26, 2022 EPSS Score
  • Dec 18, 2022 EPSS Score
  • Mar 7, 2023 EPSS Score
  • Apr 3, 2023 EPSS Score
  • Jul 17, 2023 EPSS Score
  • Sep 8, 2023 EPSS Score
  • Dec 22, 2023 EPSS Score
Open in Interactive Console →
$ Console Community · 100/wk Open console ›