CVE-2005-1985Microsoft Windows 2003 Server vulnerability

6 documents4 sources
Severity
7.5HIGHNVD
EPSS
46.2%
top 2.35%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedOct 13
Latest updateMay 1

Description

The Client Service for NetWare (CSNW) on Microsoft Windows 2000 SP4, XP SP1 and Sp2, and Server 2003 SP1 and earlier, allows remote attackers to execute arbitrary code due to an "unchecked buffer" when processing certain crafted network messages.

CVSS vector

AV:N/AC:L/C:P/I:P/A:PExploitability: 10.0 | Impact: 6.4

Affected Packages1 packages

🔴Vulnerability Details

2
GHSA
GHSA-2mwj-qcpg-4642: The Client Service for NetWare (CSNW) on Microsoft Windows 2000 SP4, XP SP1 and Sp2, and Server 2003 SP1 and earlier, allows remote attackers to execu2022-05-01
CVEList
CVE-2005-1985: The Client Service for NetWare (CSNW) on Microsoft Windows 2000 SP4, XP SP1 and Sp2, and Server 2003 SP1 and earlier, allows remote attackers to execu2005-10-13

💥Exploits & PoCs

3
Exploit-DB
Veritas NetBackup 4/5 - Volume Manager Daemon Remote Buffer Overflow2006-01-16
Exploit-DB
Yager 5.24 - Remote Buffer Overflow2005-04-25
Exploit-DB
RealNetworks RealPlayer 10 - '.smil' Local Buffer Overflow2005-03-07
CVE-2005-1985 — Microsoft vulnerability | cvebase