Vulnerability   
Search   
    Search 324607 CVE descriptions
and 146377 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

CVE ID:CVE-2004-0199
Description:Help and Support Center in Microsoft Windows XP and Windows Server 2003 SP1 does not properly validate HCP URLs, which allows remote attackers to execute arbitrary code, as demonstrated using certain hcp:// URLs that access the DVD Upgrade capability (dvdupgrd.htm).
Test IDs: 1.3.6.1.4.1.25623.1.0.12235  
Cross References: Common Vulnerability Exposure (CVE) ID: CVE-2004-0199
BugTraq ID: 10321
http://www.securityfocus.com/bid/10321
Bugtraq: 20040512 MS04-015 - Windows Help Center - Dvdupgrade (Google Search)
http://marc.info/?l=bugtraq&m=108437759930820&w=2
CERT/CC vulnerability note: VU#484814
http://www.kb.cert.org/vuls/id/484814
http://marc.info/?l=full-disclosure&m=108430407801825&w=2
http://www.exploitlabs.com/files/advisories/EXPL-A-2004-001-helpctr.txt
Microsoft Security Bulletin: MS04-015
https://docs.microsoft.com/en-us/security-updates/securitybulletins/2004/ms04-015
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A1008
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A1032
XForce ISS Database: win-hcp-code-execution(16095)
https://exchange.xforce.ibmcloud.com/vulnerabilities/16095




© 1998-2025 E-Soft Inc. All rights reserved.