10

CVE-2004-0900

The DHCP Server service for Microsoft Windows NT 4.0 Server and Terminal Server Edition does not properly validate the length of certain messages, which allows remote attackers to execute arbitrary code via a malformed DHCP message, aka the "DHCP Request Vulnerability."
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Microsoft ≫ Windows Nt Version 4.0
Microsoft ≫ Windows Nt Version 4.0 Edition alpha
Microsoft ≫ Windows Nt Version 4.0 Edition enterprise_server
Microsoft ≫ Windows Nt Version 4.0 Edition server
Microsoft ≫ Windows Nt Version 4.0 Edition terminal_server
Microsoft ≫ Windows Nt Version 4.0 Edition terminal_server_alpha
Microsoft ≫ Windows Nt Version 4.0 Update sp1
Microsoft ≫ Windows Nt Version 4.0 Update sp1 Edition alpha
Microsoft ≫ Windows Nt Version 4.0 Update sp1 Edition enterprise_server
Microsoft ≫ Windows Nt Version 4.0 Update sp1 Edition server
Microsoft ≫ Windows Nt Version 4.0 Update sp1 Edition terminal_server
Microsoft ≫ Windows Nt Version 4.0 Update sp2
Microsoft ≫ Windows Nt Version 4.0 Update sp2 Edition alpha
Microsoft ≫ Windows Nt Version 4.0 Update sp2 Edition enterprise_server
Microsoft ≫ Windows Nt Version 4.0 Update sp2 Edition server
Microsoft ≫ Windows Nt Version 4.0 Update sp2 Edition terminal_server
Microsoft ≫ Windows Nt Version 4.0 Update sp3
Microsoft ≫ Windows Nt Version 4.0 Update sp3 Edition alpha
Microsoft ≫ Windows Nt Version 4.0 Update sp3 Edition enterprise_server
Microsoft ≫ Windows Nt Version 4.0 Update sp3 Edition server
Microsoft ≫ Windows Nt Version 4.0 Update sp3 Edition terminal_server
Microsoft ≫ Windows Nt Version 4.0 Update sp4
Microsoft ≫ Windows Nt Version 4.0 Update sp4 Edition alpha
Microsoft ≫ Windows Nt Version 4.0 Update sp4 Edition enterprise_server
Microsoft ≫ Windows Nt Version 4.0 Update sp4 Edition server
Microsoft ≫ Windows Nt Version 4.0 Update sp4 Edition terminal_server
Microsoft ≫ Windows Nt Version 4.0 Update sp5
Microsoft ≫ Windows Nt Version 4.0 Update sp5 Edition alpha
Microsoft ≫ Windows Nt Version 4.0 Update sp5 Edition enterprise_server
Microsoft ≫ Windows Nt Version 4.0 Update sp5 Edition server
Microsoft ≫ Windows Nt Version 4.0 Update sp5 Edition terminal_server
Microsoft ≫ Windows Nt Version 4.0 Update sp6
Microsoft ≫ Windows Nt Version 4.0 Update sp6 Edition alpha
Microsoft ≫ Windows Nt Version 4.0 Update sp6 Edition enterprise_server
Microsoft ≫ Windows Nt Version 4.0 Update sp6 Edition server
Microsoft ≫ Windows Nt Version 4.0 Update sp6 Edition terminal_server
Microsoft ≫ Windows Nt Version 4.0 Update sp6a
Microsoft ≫ Windows Nt Version 4.0 Update sp6a Edition alpha
Microsoft ≫ Windows Nt Version 4.0 Update sp6a Edition enterprise_server
Microsoft ≫ Windows Nt Version 4.0 Update sp6a Edition server
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 26.04% 0.977
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
NIST 10 10 10
AV:N/AC:L/Au:N/C:C/I:C/A:C
Es wurden noch keine Informationen zu CWE veröffentlicht.
https://docs.microsoft.com/en-us/security-updates/securitybulletins/2004/ms04-042
https://exchange.xforce.ibmcloud.com/vulnerabilities/18342
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A3577
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A4846