Vulnerabilities > CVE-2003-0003 - Unspecified vulnerability in Microsoft products
Attack vector
UNKNOWN Attack complexity
UNKNOWN Privileges required
UNKNOWN Confidentiality impact
UNKNOWN Integrity impact
UNKNOWN Availability impact
UNKNOWN Summary
Buffer overflow in the RPC Locator service for Microsoft Windows NT 4.0, Windows NT 4.0 Terminal Server Edition, Windows 2000, and Windows XP allows local users to execute arbitrary code via an RPC call to the service containing certain parameter information.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
OS | 44 | |
Application | 1 |
Exploit-Db
description Microsoft Windows XP/2000/NT 4 Locator Service Buffer Overflow Vulnerability. CVE-2003-0003. Remote exploit for windows platform id EDB-ID:22194 last seen 2016-02-02 modified 2003-01-22 published 2003-01-22 reporter David Litchfield source https://www.exploit-db.com/download/22194/ title Microsoft Windows XP/2000/NT 4 Locator Service Buffer Overflow Vulnerability description MS Windows RPC Locator Service Remote Exploit. CVE-2003-0003. Remote exploit for windows platform id EDB-ID:5 last seen 2016-01-31 modified 2003-04-03 published 2003-04-03 reporter Marcin Wolak source https://www.exploit-db.com/download/5/ title Microsoft Windows RPC Locator Service - Remote Exploit
Nessus
NASL family | Windows : Microsoft Bulletins |
NASL id | SMB_NT_MS03-001.NASL |
description | The Microsoft Locate service is a name server that maps logical names to network-specific names. There is a security vulnerability in this server that allows an attacker to execute arbitrary code in it by sending a specially crafted packet to it. |
last seen | 2020-06-01 |
modified | 2020-06-02 |
plugin id | 11212 |
published | 2003-01-23 |
reporter | This script is Copyright (C) 2003-2018 Tenable Network Security, Inc. |
source | https://www.tenable.com/plugins/nessus/11212 |
title | MS03-001: Unchecked buffer in Locate Service (810833) |
code |
|
Oval
accepted | 2016-02-08T10:00:00.000-05:00 | ||||||||
class | vulnerability | ||||||||
contributors |
| ||||||||
definition_extensions |
| ||||||||
description | Buffer overflow in the RPC Locator service for Microsoft Windows NT 4.0, Windows NT 4.0 Terminal Server Edition, Windows 2000, and Windows XP allows local users to execute arbitrary code via an RPC call to the service containing certain parameter information. | ||||||||
family | windows | ||||||||
id | oval:org.mitre.oval:def:103 | ||||||||
status | accepted | ||||||||
submitted | 2003-08-27T12:00:00.000-04:00 | ||||||||
title | Windows RPC Locator Service Buffer Overflow | ||||||||
version | 70 |
References
- http://www.cert.org/advisories/CA-2003-03.html
- http://www.kb.cert.org/vuls/id/610986
- http://www.securityfocus.com/bid/6666
- http://marc.info/?l=bugtraq&m=104394414713415&w=2
- http://marc.info/?l=ntbugtraq&m=104393588232166&w=2
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A103
- https://exchange.xforce.ibmcloud.com/vulnerabilities/11132
- https://docs.microsoft.com/en-us/security-updates/securitybulletins/2003/ms03-001