CVE-2004-0575
Microsoft Windows - RCE
Title source: llmDescription
Integer overflow in DUNZIP32.DLL for Microsoft Windows XP, Windows XP 64-bit Edition, Windows Server 2003, and Windows Server 2003 64-bit Edition allows remote attackers to execute arbitrary code via compressed (zipped) folders that involve an "unchecked buffer" and improper length validation.
Exploits (2)
References (12)
Scores
EPSS
0.7244
EPSS Percentile
98.7%
Classification
Status
draft
Affected Products (4)
microsoft/windows_2003_server
microsoft/windows_2003_server
microsoft/windows_xp
microsoft/windows_xp
Timeline
Published
Nov 03, 2004
Tracked Since
Feb 18, 2026