7.5
CVE-2002-0694
- EPSS 31.91%
- Published 10.10.2002 04:00:00
- Last modified 03.04.2025 01:03:51
- Source cve@mitre.org
- Teams watchlist Login
- Open Login
The HTML Help facility in Microsoft Windows 98, 98 Second Edition, Millennium Edition, NT 4.0, NT 4.0 Terminal Server Edition, Windows 2000, and Windows XP uses the Local Computer Security Zone when opening .chm files from the Temporary Internet Files folder, which allows remote attackers to execute arbitrary code via HTML mail that references or inserts a malicious .chm file containing shortcuts that can be executed, aka "Code Execution via Compiled HTML Help File."
Data is provided by the National Vulnerability Database (NVD)
Microsoft ≫ Windows 2000 Updatesp1
Microsoft ≫ Windows 2000 Updatesp2
Microsoft ≫ Windows 2000 Updatesp3
Microsoft ≫ Windows 2000 Terminal Services Updatesp1
Microsoft ≫ Windows 2000 Terminal Services Updatesp2
Microsoft ≫ Windows 2000 Terminal Services Updatesp3
Microsoft ≫ Windows 98 Updategold
Microsoft ≫ Windows Nt Version4.0 Editionenterprise_server
Microsoft ≫ Windows Nt Version4.0 Editionserver
Microsoft ≫ Windows Nt Version4.0 Editionterminal_server
Microsoft ≫ Windows Nt Version4.0 Editionworkstation
Microsoft ≫ Windows Nt Version4.0 Updatesp1 Editionenterprise_server
Microsoft ≫ Windows Nt Version4.0 Updatesp1 Editionserver
Microsoft ≫ Windows Nt Version4.0 Updatesp1 Editionterminal_server
Microsoft ≫ Windows Nt Version4.0 Updatesp1 Editionworkstation
Microsoft ≫ Windows Nt Version4.0 Updatesp2 Editionenterprise_server
Microsoft ≫ Windows Nt Version4.0 Updatesp2 Editionserver
Microsoft ≫ Windows Nt Version4.0 Updatesp2 Editionterminal_server
Microsoft ≫ Windows Nt Version4.0 Updatesp2 Editionworkstation
Microsoft ≫ Windows Nt Version4.0 Updatesp3 Editionenterprise_server
Microsoft ≫ Windows Nt Version4.0 Updatesp3 Editionserver
Microsoft ≫ Windows Nt Version4.0 Updatesp3 Editionterminal_server
Microsoft ≫ Windows Nt Version4.0 Updatesp3 Editionworkstation
Microsoft ≫ Windows Nt Version4.0 Updatesp4 Editionenterprise_server
Microsoft ≫ Windows Nt Version4.0 Updatesp4 Editionserver
Microsoft ≫ Windows Nt Version4.0 Updatesp4 Editionterminal_server
Microsoft ≫ Windows Nt Version4.0 Updatesp4 Editionworkstation
Microsoft ≫ Windows Nt Version4.0 Updatesp5 Editionenterprise_server
Microsoft ≫ Windows Nt Version4.0 Updatesp5 Editionserver
Microsoft ≫ Windows Nt Version4.0 Updatesp5 Editionterminal_server
Microsoft ≫ Windows Nt Version4.0 Updatesp5 Editionworkstation
Microsoft ≫ Windows Nt Version4.0 Updatesp6 Editionenterprise_server
Microsoft ≫ Windows Nt Version4.0 Updatesp6 Editionserver
Microsoft ≫ Windows Nt Version4.0 Updatesp6 Editionterminal_server
Microsoft ≫ Windows Nt Version4.0 Updatesp6 Editionworkstation
Microsoft ≫ Windows Nt Version4.0 Updatesp6a Editionenterprise_server
Microsoft ≫ Windows Nt Version4.0 Updatesp6a Editionserver
Microsoft ≫ Windows Nt Version4.0 Updatesp6a Editionterminal_server
Microsoft ≫ Windows Nt Version4.0 Updatesp6a Editionworkstation
Microsoft ≫ Windows Xp Editionhome
Microsoft ≫ Windows Xp Updategold Editionprofessional
Microsoft ≫ Windows Xp Updatesp1 Editionhome
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
Type | Source | Score | Percentile |
---|---|---|---|
EPSS | FIRST.org | 31.91% | 0.967 |
Source | Base Score | Exploit Score | Impact Score | Vector string |
---|---|---|---|---|
nvd@nist.gov | 7.5 | 10 | 6.4 |
AV:N/AC:L/Au:N/C:P/I:P/A:P
|