Sploitus

CVE-2002-1230

10 known exploits for CVE-2002-1230

NetDDE Agent on Windows NT 4.0, 4.0 Terminal Server Edition, Windows 2000, and Windows XP allows local users to execute arbitrary code as LocalSystem via "shatter" style attack by sending a WM_COPYDATA message followed by a WM_TIMER message, as demonstrated by GetAd, aka "Flaw in Windows WM_TIMER Message Handling Could Enable Privilege Elevation."

Microsoft Windows 2000
All versions
Microsoft Windows 2000 Terminal Services
All versions
Fix
Available
CVSS 2.0
4.6 MEDIUM
EPSS
2.4% (82th percentile)
NVD status
Modified
Published
2004-09-01
CVE-2002-1230 at NVD
Authoritative description, scoring and affected products

10 known exploits for CVE-2002-1230

Proof-of-concept code and exploit modules indexed by Sploitus