PoC Index

CVE-2004-0552

HIGH 7.5EPSS 23.9%

Sophos Small Business Suite 1.00 on Windows does not properly handle files whose names contain reserved MS-DOS device names such as (1) LPT1, (2) COM1, (3) AUX, (4) CON, or (5) PRN, which can allow malicious code to bypass detection when it is installed, copied, or executed.

CVSS v2.0
7.5 HIGHAV:N/AC:L/Au:N/C:P/I:P/A:P
EPSS
23.87% chance of exploitation in the next 30 days, 98th percentile
Published
2004-09-28
Updated
2024-08-08

ExploitDB entries (1)

References

Related