Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Dustin Schneider

#22339of 53,634
10Total CVSS
Vulnerabilities · 1
PT-2004-1377
10
2004-07-14
Microsoft · Windows 2000 · CVE-2004-0212
**Name of the Vulnerable Software and Affected Versions** Windows 2000 Windows XP Internet Explorer 6 on Windows NT 4.0 **Description** A stack-based buffer overflow issue allows local or remote attackers to execute arbitrary code via a .job file containing long parameters. This can be exploited by accessing a .job file on an anonymous share using Internet Explorer. **Recommendations** For Windows 2000, update to a version that includes the fix for this issue. For Windows XP, update to a version that includes the fix for this issue. For Internet Explorer 6 on Windows NT 4.0, update to a version that includes the fix for this issue. As a temporary workaround, consider restricting access to .job files on anonymous shares to minimize the risk of exploitation.