First published: Fri Mar 15 2002(Updated: )
Buffer overflow in Windows Shell (used as the Windows Desktop) allows local and possibly remote attackers to execute arbitrary code via a custom URL handler that has not been removed for an application that has been improperly uninstalled.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Microsoft Windows 2000 | ||
Microsoft Windows 9x | =gold | |
Microsoft Windows 98 | ||
Microsoft Windows NT | =4.0 | |
Microsoft Windows NT | =4.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2002-0070 is classified as a high severity vulnerability due to the potential for remote code execution.
To mitigate CVE-2002-0070, ensure that applications with custom URL handlers are properly uninstalled and remove any leftover handlers.
CVE-2002-0070 affects users of Microsoft Windows NT 4.0, Windows 2000, Windows 98, and Windows 98SE.
CVE-2002-0070 is a buffer overflow vulnerability that can allow arbitrary code execution.
Yes, CVE-2002-0070 can potentially be exploited remotely through custom URL handlers.