CVE-2003-0717

Messenger Service - Buffer Overflow

Title source: llm
STIX 2.1

Exploitation Summary

EIP tracks 4 public exploits for CVE-2003-0717. PoCs published by VeNoMouS, MrNice, Adik.

AI-analyzed exploit summary This is a Proof of Concept (PoC) for CVE-2003-0717, a buffer overflow vulnerability in the Windows Messenger Service. The exploit sends a maliciously crafted UDP packet to port 135, causing a Denial of Service (DoS) by triggering a buffer overflow due to improper validation of message length.

Description

The Messenger Service for Windows NT through Server 2003 does not properly verify the length of the message, which allows remote attackers to execute arbitrary code via a buffer overflow attack.

Exploits (4)

exploitdb WORKING POC VERIFIED
by VeNoMouS · cdoswindows
https://www.exploit-db.com/exploits/385

This is a Proof of Concept (PoC) for CVE-2003-0717, a buffer overflow vulnerability in the Windows Messenger Service. The exploit sends a maliciously crafted UDP packet to port 135, causing a Denial of Service (DoS) by triggering a buffer overflow due to improper validation of message length.

Classification
Working Poc 95%
Attack Type
Dos
Complexity
Moderate
Reliability
Reliable
Target: Microsoft Windows Messenger Service (Win2K SP4 tested)
No auth needed
Prerequisites: Network access to target · Target running vulnerable Messenger Service
devstral-2 · analyzed Feb 16, 2026 Full analysis →
exploitdb WORKING POC VERIFIED
by MrNice · cremotewindows
https://www.exploit-db.com/exploits/135

This exploit targets CVE-2003-0717, a buffer overflow in the Microsoft Messenger Service (port 135). It uses an unhandled exception filter to redirect execution and achieve remote code execution (RCE) on Windows 2000 SP0.

Classification
Working Poc 95%
Attack Type
Rce
Complexity
Moderate
Reliability
Reliable
Target: Microsoft Messenger Service (Windows 2000 SP0)
No auth needed
Prerequisites: Network access to port 135 on target · Target running vulnerable Messenger Service
devstral-2 · analyzed Feb 16, 2026 Full analysis →
exploitdb WORKING POC VERIFIED
by Adik · cremotewindows
https://www.exploit-db.com/exploits/23247

This exploit targets a buffer overflow vulnerability in Microsoft Windows Messenger Service (CVE-2003-0717) to achieve remote code execution. It crafts a malicious UDP packet to trigger the overflow and includes shellcode to bind a command shell on port 9191.

Classification
Working Poc 95%
Attack Type
Rce
Complexity
Moderate
Reliability
Reliable
Target: Microsoft Windows Messenger Service (Windows 2000 SP3, Windows XP SP1)
No auth needed
Prerequisites: Network access to target's UDP port 135 · Target OS and service version matching exploit configuration
devstral-2 · analyzed Feb 16, 2026 Full analysis →
exploitdb WORKING POC VERIFIED
by LSD-PLaNET · cdoswindows
https://www.exploit-db.com/exploits/111

This exploit targets a buffer overflow in the Messenger Service (MS03-043) by sending a malformed UDP packet to port 135. The PoC fills the 'body' field with 0x14 bytes, triggering a DoS condition that causes the target system to reboot.

Classification
Working Poc 90%
Attack Type
Dos
Complexity
Moderate
Reliability
Reliable
Target: Microsoft Windows Messenger Service (Win2K SP4)
No auth needed
Prerequisites: Network access to UDP port 135 on the target
devstral-2 · analyzed Feb 16, 2026 Full analysis →

References (8)

Core 8
Core References
Mailing List mailing-list x_refsource_bugtraq
http://marc.info/?l=bugtraq&m=106666713812158&w=2
Third Party Advisory, VDB Entry vdb-entry signature x_refsource_oval
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A213
Mailing List mailing-list x_refsource_bugtraq
http://marc.info/?l=ntbugtraq&m=106632188709562&w=2
US Government Resource third-party-advisory x_refsource_cert
http://www.cert.org/advisories/CA-2003-27.html
Patch, Third Party Advisory, US Government Resource third-party-advisory x_refsource_cert-vn
http://www.kb.cert.org/vuls/id/575892
Exploit, Patch, Vendor Advisory vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/8826
Third Party Advisory, VDB Entry vdb-entry signature x_refsource_oval
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A268

Scores

EPSS 0.6346
EPSS Percentile 99.1%

Details

Status published
Products (9)
microsoft/windows_2000 (5 CPE variants)
microsoft/windows_2003_server enterprise
microsoft/windows_2003_server enterprise_64-bit
microsoft/windows_2003_server r2 (2 CPE variants)
microsoft/windows_2003_server standard
microsoft/windows_2003_server web
microsoft/windows_me
microsoft/windows_nt 4.0 (31 CPE variants)
microsoft/windows_xp (5 CPE variants)
Published Nov 17, 2003
Tracked Since Feb 18, 2026