Vulnerabilities > CVE-2003-0469 - Unspecified vulnerability in Microsoft products
Attack vector
UNKNOWN Attack complexity
UNKNOWN Privileges required
UNKNOWN Confidentiality impact
UNKNOWN Integrity impact
UNKNOWN Availability impact
UNKNOWN Summary
Buffer overflow in the HTML Converter (HTML32.cnv) on various Windows operating systems allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via cut-and-paste operation, as demonstrated in Internet Explorer 5.0 using a long "align" argument in an HR tag.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
OS | 10 |
Exploit-Db
description | Microsoft Windows XP/2000/NT 4 HTML Converter HR Align Buffer Overflow Vulnerability. CVE-2003-0469. Remote exploit for windows platform |
id | EDB-ID:22824 |
last seen | 2016-02-02 |
modified | 2003-06-23 |
published | 2003-06-23 |
reporter | Digital Scream |
source | https://www.exploit-db.com/download/22824/ |
title | Microsoft Windows XP/2000/NT 4 HTML Converter HR Align Buffer Overflow Vulnerability |
Nessus
NASL family | Windows : Microsoft Bulletins |
NASL id | SMB_NT_MS03-023.NASL |
description | The remote host contains a version of the HTML Converter module that could allow an attacker to execute arbitrary code on the remote host by constructing a malicious web page and enticing a victim to visit this web page. |
last seen | 2020-06-01 |
modified | 2020-06-02 |
plugin id | 11878 |
published | 2003-10-13 |
reporter | This script is Copyright (C) 2003-2018 Tenable Network Security, Inc. |
source | https://www.tenable.com/plugins/nessus/11878 |
title | MS03-023: Buffer Overrun In HTML Converter Could Allow Code Execution (823559) |
code |
|
References
- http://lists.grok.org.uk/pipermail/full-disclosure/2003-July/006155.html
- http://lists.grok.org.uk/pipermail/full-disclosure/2003-July/006155.html
- http://lists.grok.org.uk/pipermail/full-disclosure/2003-June/006067.html
- http://lists.grok.org.uk/pipermail/full-disclosure/2003-June/006067.html
- http://marc.info/?l=bugtraq&m=105639925122961&w=2
- http://marc.info/?l=bugtraq&m=105639925122961&w=2
- http://www.cert.org/advisories/CA-2003-14.html
- http://www.cert.org/advisories/CA-2003-14.html
- http://www.kb.cert.org/vuls/id/823260
- http://www.kb.cert.org/vuls/id/823260
- http://www.securityfocus.com/bid/8016
- http://www.securityfocus.com/bid/8016
- https://docs.microsoft.com/en-us/security-updates/securitybulletins/2003/ms03-023
- https://docs.microsoft.com/en-us/security-updates/securitybulletins/2003/ms03-023