CVE-2004-2290: High severity Microsoft Windows XP vulnerability
Published Dec 31, 2004
·Updated
Microsoft Windows XP Explorer allows attackers to execute arbitrary code via a HTML and script in a self-executing folder that references an executable file within the folder, which is automatically executed when a user accesses the folder.
Affected Software
6 affected components
Microsoft Windows XP=sp1
Microsoft Windows XP=gold
Microsoft Windows XP
Microsoft Windows XP
Microsoft Windows XP=gold
Microsoft Windows XP=sp1
Event History
Dec 31, 2004
CVE Published
05:00 AM
Aug 4, 2005
CVE Published
via MITRE·08:00 AM
Data Sourced
via MITRE·08:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2004-2290?
CVE-2004-2290 has a high severity rating due to its ability to allow arbitrary code execution.
2
How do I fix CVE-2004-2290?
To fix CVE-2004-2290, you should update your Microsoft Windows XP system with the latest security patches provided by Microsoft.
3
What versions of Windows XP are affected by CVE-2004-2290?
CVE-2004-2290 affects Windows XP SP1 and Windows XP Gold versions.
4
What are the potential risks of CVE-2004-2290?
The potential risks of CVE-2004-2290 include unauthorized access to system resources and execution of malicious software.
5
Is CVE-2004-2290 exploitable remotely?
CVE-2004-2290 can be exploited locally by users who access the malicious self-executing folder.