PT-2002-2192 · Microsoft · Windows 2000+2

Published

2002-10-28

·

Updated

2019-04-30

·

CVE-2002-1214

CVSS v2.0

7.5

High

VectorAV:N/AC:L/Au:N/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions: Microsoft PPTP Service versions on Windows XP and Windows 2000
Description: The issue is related to a buffer overflow in the Microsoft PPTP Service, which can be triggered by a remote attacker sending a certain PPTP packet with malformed control data. This can cause a denial of service, resulting in the system hanging, and potentially allow the execution of arbitrary code.
Recommendations: For Windows XP and Windows 2000, apply the necessary patch or configuration changes as recommended by Microsoft to fix the buffer overflow issue in the PPTP Service.

Exploit

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2002-1214

Affected Products

Pptp Service
Windows 2000
Windows Xp