PT-2002-2192 · Microsoft · Windows 2000+2
Published
2002-10-28
·
Updated
2019-04-30
·
CVE-2002-1214
CVSS v2.0
7.5
High
| Vector | AV:N/AC:L/Au:N/C:P/I:P/A:P |
Name of the Vulnerable Software and Affected Versions:
Microsoft PPTP Service versions on Windows XP and Windows 2000
Description:
The issue is related to a buffer overflow in the Microsoft PPTP Service, which can be triggered by a remote attacker sending a certain PPTP packet with malformed control data. This can cause a denial of service, resulting in the system hanging, and potentially allow the execution of arbitrary code.
Recommendations:
For Windows XP and Windows 2000, apply the necessary patch or configuration changes as recommended by Microsoft to fix the buffer overflow issue in the PPTP Service.
Exploit
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Pptp Service
Windows 2000
Windows Xp