7.5
CVE-2002-0155
- EPSS 24.1%
- Veröffentlicht 29.05.2002 04:00:00
- Zuletzt bearbeitet 16.06.2026 21:56:54
- Erkennungen
Buffer overflow in Microsoft MSN Chat ActiveX Control, as used in MSN Messenger 4.5 and 4.6, and Exchange Instant Messenger 4.5 and 4.6, allows remote attackers to execute arbitrary code via a long ResDLL parameter in the MSNChat OCX.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Microsoft ≫ Msn Messenger Version 4.5
Microsoft ≫ Msn Messenger Version 4.6
Microsoft ≫ Msn Messenger Service For Exchange Version 4.5
Microsoft ≫ Msn Messenger Service For Exchange Version 4.6
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 24.1% | 0.976 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| NIST | 7.5 | 10 | 6.4 |
AV:N/AC:L/Au:N/C:P/I:P/A:P
|
http://marc.info/?l=bugtraq&m=102089960531919&w=2
http://www.cert.org/advisories/CA-2002-13.html
http://www.iss.net/security_center/static/9041.php
http://www.securityfocus.com/bid/4707
https://docs.microsoft.com/en-us/security-updates/securitybulletins/2002/ms02-022