CVE-2003-0605

EXPLOITED

Windows 2000 SP3-SP4 - DoS

Title source: llm

Description

The RPC DCOM interface in Windows 2000 SP3 and SP4 allows remote attackers to cause a denial of service (crash), and local attackers to use the DoS to hijack the epmapper pipe to gain privileges, via certain messages to the __RemoteGetClassObject interface that cause a NULL pointer to be passed to the PerformScmStage function.

Exploits (10)

exploitdb WORKING POC VERIFIED
by ins1der · cremotewindows
https://www.exploit-db.com/exploits/117
exploitdb WORKING POC VERIFIED
by anonymous · cremotewindows
https://www.exploit-db.com/exploits/109
exploitdb WORKING POC VERIFIED
by Flashsky · cremotewindows
https://www.exploit-db.com/exploits/103
exploitdb SCANNER VERIFIED
by Doke Scott · cremotewindows
https://www.exploit-db.com/exploits/97
exploitdb WORKING POC VERIFIED
by oc192 · cremotewindows
https://www.exploit-db.com/exploits/76
exploitdb WORKING POC VERIFIED
by anonymous · cremotewindows
https://www.exploit-db.com/exploits/70
exploitdb WORKING POC VERIFIED
by pHrail · cremotewindows
https://www.exploit-db.com/exploits/69
exploitdb WORKING POC VERIFIED
by H D Moore · cremotewindows
https://www.exploit-db.com/exploits/66
exploitdb WORKING POC VERIFIED
by Flashsky · cremotewindows
https://www.exploit-db.com/exploits/64
exploitdb WORKING POC VERIFIED
by Flashsky · cdoswindows
https://www.exploit-db.com/exploits/61

Scores

EPSS 0.6064
EPSS Percentile 98.3%

Details

VulnCheck KEV 2003-08-01
Status published
Products (1)
microsoft/windows_2000 (5 CPE variants)
Published Aug 27, 2003
Tracked Since Feb 18, 2026