Vulnerability   
Search   
    Search 324607 CVE descriptions
and 146377 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

Test ID:1.3.6.1.4.1.25623.1.0.12235
Category:Windows
Title:Microsoft Help Center Remote Code Execution (840374)
Summary:NOSUMMARY
Description:Description:

The remote host contains bugs in the Microsoft Help and Support Center
in the way it handles HCP URL validation. (840374)

An attacker could use this bug to execute arbitrary commands on the
remote host. To exploit this bug, an attacker would need to lure a user
of the remote host into visiting a rogue website or to click on a link
received in an email.

Solution : http://www.microsoft.com/technet/security/bulletin/ms04-015.mspx
Risk factor : High

Cross-Ref: BugTraq ID: 10321
Common Vulnerability Exposure (CVE) ID: CVE-2004-0199
http://www.securityfocus.com/bid/10321
Bugtraq: 20040512 MS04-015 - Windows Help Center - Dvdupgrade (Google Search)
http://marc.info/?l=bugtraq&m=108437759930820&w=2
CERT/CC vulnerability note: VU#484814
http://www.kb.cert.org/vuls/id/484814
http://marc.info/?l=full-disclosure&m=108430407801825&w=2
http://www.exploitlabs.com/files/advisories/EXPL-A-2004-001-helpctr.txt
Microsoft Security Bulletin: MS04-015
https://docs.microsoft.com/en-us/security-updates/securitybulletins/2004/ms04-015
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A1008
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A1032
XForce ISS Database: win-hcp-code-execution(16095)
https://exchange.xforce.ibmcloud.com/vulnerabilities/16095
CopyrightThis script is Copyright (C) 2004 Tenable Network Security

This is only one of 146377 vulnerability tests in our test suite. Find out more about running a complete security audit.

To run a free test of this vulnerability against your system, register below.




© 1998-2025 E-Soft Inc. All rights reserved.