CVE-2004-0207

Microsoft Windows - Privilege Escalation

Title source: llm
STIX 2.1

Description

"Shatter" style vulnerability in the Window Management application programming interface (API) for Microsoft Windows 98, Windows NT 4.0, Windows 2000, Windows XP, and Windows Server 2003 allows local users to gain privileges by using certain API functions to change properties of privileged programs using the SetWindowLong and SetWIndowLongPtr API functions.

References (5)

Core 5
Core References
Third Party Advisory, VDB Entry vdb-entry x_refsource_xf
https://exchange.xforce.ibmcloud.com/vulnerabilities/16579
Mailing List mailing-list x_refsource_bugtraq
http://marc.info/?l=bugtraq&m=109777417922695&w=2
Patch, Third Party Advisory, US Government Resource third-party-advisory x_refsource_cert-vn
http://www.kb.cert.org/vuls/id/218526
Third Party Advisory, VDB Entry vdb-entry x_refsource_xf
https://exchange.xforce.ibmcloud.com/vulnerabilities/17658

Scores

EPSS 0.0180
EPSS Percentile 76.4%

Details

Status published
Products (5)
microsoft/windows_2000
microsoft/windows_2003_server r2
microsoft/windows_98
microsoft/windows_nt 4.0
microsoft/windows_xp
Published Nov 03, 2004
Tracked Since Feb 18, 2026