Vulnerability   
Search   
    Search 324607 CVE descriptions
and 146377 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

CVE ID:CVE-2002-1230
Description:NetDDE Agent on Windows NT 4.0, 4.0 Terminal Server Edition, Windows 2000, and Windows XP allows local users to execute arbitrary code as LocalSystem via "shatter" style attack by sending a WM_COPYDATA message followed by a WM_TIMER message, as demonstrated by GetAd, aka "Flaw in Windows WM_TIMER Message Handling Could Enable Privilege Elevation."
Test IDs: 1.3.6.1.4.1.25623.1.0.11191  
Cross References: Common Vulnerability Exposure (CVE) ID: CVE-2002-1230
BugTraq ID: 5927
http://www.securityfocus.com/bid/5927
Computer Incident Advisory Center Bulletin: N-027
http://www.ciac.org/ciac/bulletins/n-027.shtml
http://getad.chat.ru/
http://www.packetstormsecurity.nl/filedesc/GetAd.c.html
Microsoft Security Bulletin: MS02-071
https://docs.microsoft.com/en-us/security-updates/securitybulletins/2002/ms02-071
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A681
XForce ISS Database: win-netdde-gain-privileges(10343)
http://www.iss.net/security_center/static/10343.php




© 1998-2025 E-Soft Inc. All rights reserved.