CVE-2005-0048

Microsoft Windows 2000 - Denial of Service

Title source: rule

Description

Microsoft Windows XP SP2 and earlier, 2000 SP3 and SP4, Server 2003, and older operating systems allows remote attackers to cause a denial of service and possibly execute arbitrary code via crafted IP packets with malformed options, aka the "IP Validation Vulnerability."

Exploits (3)

exploitdb WORKING POC VERIFIED
by Yuri Gushin · cremotewindows
https://www.exploit-db.com/exploits/25384
exploitdb WORKING POC VERIFIED
by Song Liu · perldoswindows
https://www.exploit-db.com/exploits/25383
exploitdb WORKING POC
cdoswindows
https://www.exploit-db.com/exploits/942

Scores

EPSS 0.6810
EPSS Percentile 98.6%

Details

Status published
Products (2)
microsoft/windows_2000 (5 CPE variants)
microsoft/windows_xp (10 CPE variants)
Published May 02, 2005
Tracked Since Feb 18, 2026