Description
Buffer overflow in the ShellExecute API function of SHELL32.DLL in Windows 2000 before SP4 may allow attackers to cause a denial of service or execute arbitrary code via a long third argument.
References (3)
Core 3
Core References
Mailing List mailing-list
x_refsource_bugtraq
http://marc.info/?l=bugtraq&m=105725489003575&w=2
Mailing List mailing-list
x_refsource_ntbugtraq
http://marc.info/?l=ntbugtraq&m=105724538222772&w=2
Various Sources x_refsource_misc
http://www.lac.co.jp/security/intelligence/SNSAdvisory/65.html
Scores
EPSS
0.0695
EPSS Percentile
93.5%
Details
Status
published
Products (1)
microsoft/windows_2000
Published
Aug 07, 2003
Tracked Since
Feb 18, 2026