7.5
CVSSv2

CVE-2001-0909

Published: 21/11/2001 Updated: 10/10/2017
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 755
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

Buffer overflow in helpctr.exe program in Microsoft Help Center for Windows XP allows remote malicious users to execute arbitrary code via a long hcp: URL.

Vulnerable Product Search on Vulmon Subscribe to Product

microsoft windows xp

Exploits

source: wwwsecurityfocuscom/bid/6802/info A buffer overrun vulnerability was reported for helpctrexe The vulnerability exists due to insufficient bounds checking on input supplied via the HCP URI parameter An attacker can exploit this vulnerability by making a HCP request with an overly long string This will trigger the overflow con ...