7.5
CVSSv2

CVE-2002-0693

Published: 10/10/2002 Updated: 30/04/2019
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 755
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

Buffer overflow in the HTML Help ActiveX Control (hhctrl.ocx) in Microsoft Windows 98, 98 Second Edition, Millennium Edition, NT 4.0, NT 4.0 Terminal Server Edition, Windows 2000, and Windows XP allows remote malicious users to execute code via (1) a long parameter to the Alink function, or (2) script containing a long argument to the showHelp function.

Vulnerable Product Search on Vulmon Subscribe to Product

microsoft windows 2000

microsoft windows 98se

microsoft windows me

microsoft windows nt 4.0

microsoft windows xp

microsoft windows 2000 terminal services

microsoft windows 98

Exploits

source: wwwsecurityfocuscom/bid/5874/info The ActiveX control that provides much of the functionality for the Windows Help Center contains an unchecked buffer Successful exploitation could result in execution of arbitrary code in the security context of the current user /* By ipxodi@whitecellorg 10072002 prove of concept code of Wi ...