CVE-2004-0213
Utility Manager in Windows 2000 launches winhlp32.exe while Utility Manager is running with raised privileges, which allows local users to gain system privileges via a "Shatter" style attack that sends a Windows message to cause Utility Manager to launch winhlp32 by directly accessing the context sensitive help and bypassing the GUI, then sending another message to winhlp32 in order to open a user-selected file, a different vulnerability than CVE-2003-0908.
- Affected products
- Utility Manager, Windows 2000, Winhlp32.Exe
- Microsoft Windows 2000
- All versions
- CVSS 3.1
- 7.8 HIGH
- EPSS
- 20.1% (97th percentile)
- Weakness
- CWE-306
- NVD status
- Modified
- Published
- 2004-07-14
CVE-2004-0213 at NVD
4 known exploits for CVE-2004-0213
Proof-of-concept code and exploit modules indexed by Sploitus
Microsoft Windows Server 2000 - Utility Manager All-in-One (MS04-019)
Microsoft Windows Server 2000 - POSIX Subsystem Privilege Escalation (MS04-020)
Microsoft Windows Server 2000 - Universal Language Utility Manager (MS04-019)
Microsoft Windows Server 2000 - Utility Manager Privilege Escalation (MS04-019)