CVE-2005-2935

Microsoft AntiSpyware - Code Injection

Title source: llm
STIX 2.1

Description

Unquoted Windows search path vulnerability in Microsoft AntiSpyware might allow local users to execute code via a malicious c:\program.exe file, which is run by AntiSpywareMain.exe when it attempts to execute gsasDtServ.exe. NOTE: it is not clear whether this overlaps CVE-2005-2940.

References (2)

Core 2
Core References
Mailing List mailing-list x_refsource_fulldisc
http://lists.grok.org.uk/pipermail/full-disclosure/2005-May/033910.html

Scores

EPSS 0.0193
EPSS Percentile 78.1%

Details

Status published
Products (1)
microsoft/antispyware
Published Sep 15, 2005
Tracked Since Feb 18, 2026