Executive Summary
Informations | |||
---|---|---|---|
Name | CVE-2004-0201 | First vendor Publication | 2004-08-06 |
Vendor | Cve | Last vendor Modification | 2024-11-20 |
Security-Database Scoring CVSS v3
Cvss vector : N/A | |||
---|---|---|---|
Overall CVSS Score | NA | ||
Base Score | NA | Environmental Score | NA |
impact SubScore | NA | Temporal Score | NA |
Exploitabality Sub Score | NA | ||
Calculate full CVSS 3.0 Vectors scores |
Security-Database Scoring CVSS v2
Cvss vector : (AV:N/AC:L/Au:N/C:C/I:C/A:C) | |||
---|---|---|---|
Cvss Base Score | 10 | Attack Range | Network |
Cvss Impact Score | 10 | Attack Complexity | Low |
Cvss Expoit Score | 10 | Authentication | None Required |
Calculate full CVSS 2.0 Vectors scores |
Detail
Heap-based buffer overflow in the HtmlHelp program (hh.exe) in HTML Help for Microsoft Windows 98, Me, NT 4.0, 2000, XP, and Server 2003 allows remote attackers to execute arbitrary commands via a .CHM file with a large length field, a different vulnerability than CVE-2003-1041. |
Original Source
Url : http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-0201 |
CAPEC : Common Attack Pattern Enumeration & Classification
Id | Name |
---|---|
CAPEC-47 | Buffer Overflow via Parameter Expansion |
CWE : Common Weakness Enumeration
% | Id | Name |
---|
OVAL Definitions
Definition Id: oval:org.mitre.oval:def:1503 | |||
Oval ID: | oval:org.mitre.oval:def:1503 | ||
Title: | Windows 2000 HtmlHelp Heap Overflow | ||
Description: | Heap-based buffer overflow in the HtmlHelp program (hh.exe) in HTML Help for Microsoft Windows 98, Me, NT 4.0, 2000, XP, and Server 2003 allows remote attackers to execute arbitrary commands via a .CHM file with a large length field, a different vulnerability than CVE-2003-1041. | ||
Family: | windows | Class: | vulnerability |
Reference(s): | CVE-2004-0201 | Version: | 2 |
Platform(s): | Microsoft Windows 2000 | Product(s): | HTML Help Facility |
Definition Synopsis: | |||
|
Definition Id: oval:org.mitre.oval:def:1530 | |||
Oval ID: | oval:org.mitre.oval:def:1530 | ||
Title: | Windows XP HtmlHelp Heap Overflow | ||
Description: | Heap-based buffer overflow in the HtmlHelp program (hh.exe) in HTML Help for Microsoft Windows 98, Me, NT 4.0, 2000, XP, and Server 2003 allows remote attackers to execute arbitrary commands via a .CHM file with a large length field, a different vulnerability than CVE-2003-1041. | ||
Family: | windows | Class: | vulnerability |
Reference(s): | CVE-2004-0201 | Version: | 8 |
Platform(s): | Microsoft Windows XP | Product(s): | HTML Help Facility |
Definition Synopsis: | |||
|
Definition Id: oval:org.mitre.oval:def:2155 | |||
Oval ID: | oval:org.mitre.oval:def:2155 | ||
Title: | Windows Server 2003 HtmlHelp Heap Overflow | ||
Description: | Heap-based buffer overflow in the HtmlHelp program (hh.exe) in HTML Help for Microsoft Windows 98, Me, NT 4.0, 2000, XP, and Server 2003 allows remote attackers to execute arbitrary commands via a .CHM file with a large length field, a different vulnerability than CVE-2003-1041. | ||
Family: | windows | Class: | vulnerability |
Reference(s): | CVE-2004-0201 | Version: | 2 |
Platform(s): | Microsoft Windows Server 2003 | Product(s): | HTML Help Facility |
Definition Synopsis: | |||
|
Definition Id: oval:org.mitre.oval:def:3179 | |||
Oval ID: | oval:org.mitre.oval:def:3179 | ||
Title: | Windows NT HtmlHelp Heap Overflow | ||
Description: | Heap-based buffer overflow in the HtmlHelp program (hh.exe) in HTML Help for Microsoft Windows 98, Me, NT 4.0, 2000, XP, and Server 2003 allows remote attackers to execute arbitrary commands via a .CHM file with a large length field, a different vulnerability than CVE-2003-1041. | ||
Family: | windows | Class: | vulnerability |
Reference(s): | CVE-2004-0201 | Version: | 6 |
Platform(s): | Microsoft Windows NT | Product(s): | HTML Help Facility |
Definition Synopsis: | |||
|
CPE : Common Platform Enumeration
Open Source Vulnerability Database (OSVDB)
Id | Description |
---|---|
7804 | Microsoft Windows HTML Help Arbitrary Code Execution Microsoft HTML Help application (hh.exe) contains a flaw that may allow a malicious user to remotely execute code. The issue is triggered when a corrupt .chm file is opened with the Help application. It is possible that the flaw may allow arbitrary code execution resulting in a loss of confidentiality, integrity and/or availability. |
Snort® IPS/IDS
Date | Description |
---|---|
2014-01-16 | Microsoft Windows showHelp CHM malicious file execution attempt RuleID : 28925 - Revision : 3 - Type : BROWSER-IE |
2014-01-16 | Microsoft Windows showHelp CHM malicious file execution attempt RuleID : 28924 - Revision : 3 - Type : BROWSER-IE |
2014-01-16 | Microsoft Windows showHelp CHM malicious file execution attempt RuleID : 28923 - Revision : 3 - Type : BROWSER-IE |
2014-01-16 | Microsoft Windows showHelp CHM malicious file execution attempt RuleID : 28922 - Revision : 3 - Type : BROWSER-IE |
2014-01-16 | Microsoft Windows showHelp CHM malicious file execution attempt RuleID : 28921 - Revision : 3 - Type : BROWSER-IE |
2014-01-16 | Microsoft Windows showHelp CHM malicious file execution attempt RuleID : 28920 - Revision : 3 - Type : BROWSER-IE |
Nessus® Vulnerability Scanner
Date | Description |
---|---|
2004-07-13 | Name : Arbitrary code can be executed on the remote host through the web client. File : smb_nt_ms04-023.nasl - Type : ACT_GATHER_INFO |
Sources (Detail)
Alert History
Date | Informations |
---|---|
2024-11-28 23:22:59 |
|
2024-11-28 12:06:02 |
|
2024-08-02 12:02:46 |
|
2024-08-02 01:01:29 |
|
2024-02-02 01:02:31 |
|
2024-02-01 12:01:31 |
|
2023-09-05 12:02:24 |
|
2023-09-05 01:01:22 |
|
2023-09-02 12:02:25 |
|
2023-09-02 01:01:22 |
|
2023-08-12 12:02:56 |
|
2023-08-12 01:01:22 |
|
2023-08-11 12:02:31 |
|
2023-08-11 01:01:24 |
|
2023-08-06 12:02:19 |
|
2023-08-06 01:01:23 |
|
2023-08-04 12:02:23 |
|
2023-08-04 01:01:24 |
|
2023-07-14 12:02:22 |
|
2023-07-14 01:01:24 |
|
2023-03-29 01:02:23 |
|
2023-03-28 12:01:28 |
|
2022-10-11 12:02:07 |
|
2022-10-11 01:01:16 |
|
2021-05-04 12:02:17 |
|
2021-04-22 01:02:26 |
|
2020-05-23 00:15:44 |
|
2019-05-09 12:01:22 |
|
2019-04-30 21:19:18 |
|
2018-10-13 00:22:28 |
|
2017-10-11 09:23:20 |
|
2017-07-11 12:01:24 |
|
2016-04-26 12:47:43 |
|
2014-02-17 10:27:17 |
|
2013-05-11 11:40:24 |
|