vendor:
Windows 2000
by:
EMM
9.3
CVSS
HIGH
Buffer Overflow
120
CWE
Product Name: Windows 2000
Affected Version From: Windows 2000 SP4
Affected Version To: Windows Server 2008
Patch Exists: YES
Related CWE: CVE-2008-4250
CPE: o:microsoft:windows_2000::sp4
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: Windows
2008
MS08-067 Exploit for CN by EMM
MS08-067 is a buffer overflow vulnerability in the Server service of Microsoft Windows. It was discovered by Tavis Ormandy and was reported to Microsoft on October 23, 2008. The vulnerability is caused due to a boundary error when processing RPC requests. This can be exploited to cause a stack-based buffer overflow via a specially crafted RPC request. Successful exploitation may allow execution of arbitrary code.
Mitigation:
Microsoft released a patch to address this vulnerability. It is recommended to apply the patch as soon as possible.