First published: Sat Oct 16 2004(Updated: )
Network Dynamic Data Exchange (NetDDE) services for Microsoft Windows 98, Windows NT 4.0, Windows 2000, Windows XP, and Windows Server 2003 allows attackers to remotely execute arbitrary code or locally gain privileges via a malicious message or application that involves an "unchecked buffer," possibly a buffer overflow.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Microsoft Windows NT | =4.0 | |
Microsoft Windows 2000 | ||
Microsoft Windows Server 2003 | =r2 | |
Microsoft Windows 9x | =gold | |
Microsoft Windows XP | =gold |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2004-0206 is considered critical due to its potential for remote code execution.
To mitigate CVE-2004-0206, disable the NetDDE services or apply any available patches from Microsoft.
CVE-2004-0206 affects Microsoft Windows 98, Windows NT 4.0, Windows 2000, Windows XP, and Windows Server 2003.
CVE-2004-0206 can be exploited via malicious messages or applications that leverage an unchecked buffer.
The impacts of CVE-2004-0206 include unauthorized remote code execution and local privilege escalation.