CVE-2002-1561

Windows <XP - DoS

Title source: llm
STIX 2.1

Description

The RPC component in Windows 2000, Windows NT 4.0, and Windows XP allows remote attackers to cause a denial of service (disabled RPC service) via a malformed packet to the RPC Endpoint Mapper at TCP port 135, which triggers a null pointer dereference.

Exploits (4)

exploitdb WORKING POC VERIFIED
by Trancer · cdoswindows
https://www.exploit-db.com/exploits/21952
exploitdb WORKING POC VERIFIED
by lion · cdoswindows
https://www.exploit-db.com/exploits/21951
exploitdb WRITEUP VERIFIED
by anonymous · textdoswindows
https://www.exploit-db.com/exploits/21954
exploitdb WRITEUP VERIFIED
by Rapid7 · textdoswindows
https://www.exploit-db.com/exploits/21953

Scores

EPSS 0.6224
EPSS Percentile 98.4%

Details

Status published
Products (4)
microsoft/windows_2000 (4 CPE variants)
microsoft/windows_2000_terminal_services (4 CPE variants)
microsoft/windows_nt 4.0 (32 CPE variants)
microsoft/windows_xp (5 CPE variants)
Published Apr 02, 2003
Tracked Since Feb 18, 2026