Vulnerability   
Search   
    Search 324607 CVE descriptions
and 146377 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

Test ID:1.3.6.1.4.1.25623.1.0.11147
Category:Windows : Microsoft Bulletins
Title:Unchecked Buffer in Windows Help (Q323255)
Summary:An unchecked buffer in Windows help could allow an attacker to; could gain control over user's system.
Description:Summary:
An unchecked buffer in Windows help could allow an attacker to
could gain control over user's system.

Affected Software/OS:
- Microsoft Windows 98

- Microsoft Windows 98 (Second Edition)

- Microsoft Windows (Millennium Edition)

- Microsoft Windows NT 4.0

- Microsoft Windows NT 4.0 (Terminal Server Edition)

- Microsoft Windows 2000

- Microsoft Windows XP

Solution:
The vendor has released updates. Please see the references for more information.

CVSS Score:
7.5

CVSS Vector:
AV:N/AC:L/Au:N/C:P/I:P/A:P

Cross-Ref: Common Vulnerability Exposure (CVE) ID: CVE-2002-0693
BugTraq ID: 5874
http://www.securityfocus.com/bid/5874
Bugtraq: 20021003 Buffer Overflow in IE/Outlook HTML Help (Google Search)
http://marc.info/?l=bugtraq&m=103365849505409&w=2
Bugtraq: 20021009 Thor Larholm security advisory TL#004 (Google Search)
http://marc.info/?l=bugtraq&m=103419115517344&w=2
Bugtraq: 20021010 prover of concept code of windows help overflow (Google Search)
http://marc.info/?l=bugtraq&m=103435279404182&w=2
Microsoft Security Bulletin: MS02-055
https://docs.microsoft.com/en-us/security-updates/securitybulletins/2002/ms02-055
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A374
http://www.iss.net/security_center/static/10253.php
Common Vulnerability Exposure (CVE) ID: CVE-2002-0694
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A403
http://www.iss.net/security_center/static/10254.php
CopyrightCopyright (C) 2002 SECNAP Network Security, LLC

This is only one of 146377 vulnerability tests in our test suite. Find out more about running a complete security audit.

To run a free test of this vulnerability against your system, register below.




© 1998-2025 E-Soft Inc. All rights reserved.