PoC Index

CVE-2003-0533

HIGH 7.5EPSS 85.5%

Stack-based buffer overflow in certain Active Directory service functions in LSASRV.DLL of the Local Security Authority Subsystem Service (LSASS) in Microsoft Windows NT 4.0 SP6a, 2000 SP2 through SP4, XP SP1, Server 2003, NetMeeting, Windows 98, and Windows ME, allows remote attackers to execute arbitrary code via a packet that causes the DsRolerUpgradeDownlevelServer function to create long debug entries for the DCPROMO.LOG log file, as exploited by the Sasser worm.

CVSS v2.0
7.5 HIGHAV:N/AC:L/Au:N/C:P/I:P/A:P
EPSS
85.48% chance of exploitation in the next 30 days, 100th percentile
Published
2004-04-16
Updated
2024-08-08

Proof-of-concept exploits (1)

Metasploit modules (1)

ExploitDB entries (3)

References

Related