CVE-2002-0597
published 2002-06-18CVE-2002-0597: LANMAN service on Microsoft Windows 2000 allows remote attackers to cause a denial of service (CPU/memory exhaustion) via a stream of malformed data to…
PriorityP425medium5CVSS 2.0
AVNACLAuNCNINAP
EXPLOIT
EPSS
51.50%
98.8th percentile
LANMAN service on Microsoft Windows 2000 allows remote attackers to cause a denial of service (CPU/memory exhaustion) via a stream of malformed data to microsoft-ds port 445.
Detection & IOCsextracted from sources · hover to see the quote
- →Monitor Windows 2000 hosts for sudden CPU exhaustion and high Kernel mode memory usage correlated with inbound connections to port 445, indicating exploitation of the LANMAN service. ↗
CVEs like this are exactly what “Exploited This Week” covers.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
No detection rules found.
Exploit-DB
Microsoft Windows Server 2000 - Lanman Denial of Service (2)
exploitdb·2003-01-03
CVE-2002-0597 Microsoft Windows Server 2000 - Lanman Denial of Service (2)
Microsoft Windows Server 2000 - Lanman Denial of Service (2)
---
source: https://www.securityfocus.com/bid/4532/info
An issue has been discovered in Windows 2000, which could cause a denial of system services.
Submitting malformed data to port 445 could cause the Lanman service to consume high CPU and Kernel mode memory usage.
https://gitlab.com/exploit-database/exploitdb-bin-sploits/-/raw/main/bin-sploits/21389.tar.gz
Exploit-DB
Microsoft Windows Server 2000 - Lanman Denial of Service (1)
exploitdb·2002-04-17
CVE-2002-0597 Microsoft Windows Server 2000 - Lanman Denial of Service (1)
Microsoft Windows Server 2000 - Lanman Denial of Service (1)
---
// source: https://www.securityfocus.com/bid/4532/info
An issue has been discovered in Windows 2000, which could cause a denial of system services.
Submitting malformed data to port 445 could cause the Lanman service to consume high CPU and Kernel mode memory usage.
/********************************************************
* Microsoft Windows 2000 Remote DoS *
* --------------------------------- *
* *
* Hello :) *
* This is an DoS exploit that utilizes the flaw found *
* by KPMG Denmark, to crasch or hang any Win2k box *
* running the LanMan server on port 445 (ms-ds). *
* What it does is just a simple 10k NULL string *
* bombardment of port 445 TCP or UDP. *
* *
* *
* By: Daniel Nystrom *
* Download: www.telhack.tk / ex
No writeups or analysis indexed.
http://archives.neohapsis.com/archives/vulnwatch/2002-q2/0025.htmlhttp://online.securityfocus.com/archive/1/268066http://support.microsoft.com/default.aspx?scid=kb%3B%5BLN%5D%3BQ320751http://www.iss.net/security_center/static/8867.phphttp://www.kb.cert.org/vuls/id/693099http://www.osvdb.org/5179http://www.securityfocus.com/bid/4532http://archives.neohapsis.com/archives/vulnwatch/2002-q2/0025.htmlhttp://online.securityfocus.com/archive/1/268066http://support.microsoft.com/default.aspx?scid=kb%3B%5BLN%5D%3BQ320751http://www.iss.net/security_center/static/8867.phphttp://www.kb.cert.org/vuls/id/693099http://www.osvdb.org/5179http://www.securityfocus.com/bid/4532
2002-06-18
Published