10
CVSSv2

CVE-2000-1089

Published: 09/01/2001 Updated: 12/10/2018
CVSS v2 Base Score: 10 | Impact Score: 10 | Exploitability Score: 10
VMScore: 1000
Vector: AV:N/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Summary

Buffer overflow in Microsoft Phone Book Service allows local users to execute arbitrary commands, aka the "Phone Book Service Buffer Overflow" vulnerability.

Vulnerable Product Search on Vulmon Subscribe to Product

microsoft windows 2000

microsoft windows nt 4.0

Exploits

## # $Id: ms00_094_pbserverrb 9179 2010-04-30 08:40:19Z jduck $ ## ## # This file is part of the Metasploit Framework and may be subject to # redistribution and commercial restrictions Please see the Metasploit # Framework web site for more information on licensing and terms of use # metasploitcom/framework/ ## require 'msf/core' clas ...
source: wwwsecurityfocuscom/bid/2048/info The Phone Book Service is an optional component that ships with the NT 4 Option Pack and Windows 2000 It is not installed by default A buffer overflow vulnerability was discovered in the URL processing routines of the Phone Book Service requests on IIS 4 and IIS 5 If exploited, this vulnerabil ...