10
CVSSv2

CVE-2004-2289

Published: 31/12/2004 Updated: 12/10/2018
CVSS v2 Base Score: 10 | Impact Score: 10 | Exploitability Score: 10
VMScore: 1000
Vector: AV:N/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Summary

Microsoft Windows XP Explorer allows local users to execute arbitrary code via a system folder with a Desktop.ini file containing a .ShellClassInfo specifier with a CLSID value that is associated with an executable file.

Vulnerable Product Search on Vulmon Subscribe to Product

microsoft windows xp

Exploits

source: wwwsecurityfocuscom/bid/10363/info A vulnerability has been reported in Microsoft Windows XP that may cause malicious code to run in the context of the currently logged-in user The flaw exists in Windows Explorer and may allow executable content that is referenced from inside a folder to run automatically when the folder is acces ...