PT-2000-1944 · Microsoft · System Monitor Activex Control+1

Published

2000-12-11

·

Updated

2018-10-12

·

CVE-2000-1034

CVSS v2.0

10

High

VectorAV:N/AC:L/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Windows 2000
Description A buffer overflow issue exists in the System Monitor ActiveX control, allowing remote attackers to execute arbitrary commands. This is achieved by providing a long LogFileName parameter in HTML source code.
Recommendations For Windows 2000, consider disabling the System Monitor ActiveX control until a patch is available. Restrict access to the vulnerable ActiveX control to minimize the risk of exploitation. Avoid using the LogFileName parameter in the affected ActiveX control until the issue is resolved.

Exploit

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2000-1034

Affected Products

System Monitor Activex Control
Windows 2000