10
CVSSv2

CVE-2004-0901

Published: 10/01/2005 Updated: 30/04/2019
CVSS v2 Base Score: 10 | Impact Score: 10 | Exploitability Score: 10
VMScore: 890
Vector: AV:N/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Summary

Microsoft Word for Windows 6.0 Converter (MSWRD632.WPC), as used in WordPad, does not properly validate certain data lengths, which allows remote malicious users to execute arbitrary code via a .wri, .rtf, and .doc file sent by email or malicious web site, aka "Font Conversion Vulnerability," a different vulnerability than CVE-2004-0571.

Vulnerable Product Search on Vulmon Subscribe to Product

microsoft windows 2003 server enterprise_64-bit

microsoft windows 2003 server r2

microsoft windows nt 4.0

microsoft windows xp

microsoft windows 2000

microsoft windows 2003 server standard

microsoft windows 2003 server web

microsoft windows 2003 server enterprise

microsoft windows me

microsoft windows 98

microsoft windows 98se