NetDDE Agent on Windows NT 4.0, 4.0 Terminal Server Edition, Windows 2000, and Windows XP allows local users to execute arbitrary code as LocalSystem via "shatter" style attack by sending a WM_COPYDATA message followed by a WM_TIMER message, as demonstrated by GetAd, aka "Flaw in Windows WM_TIMER Message Handling Could Enable Privilege Elevation."
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published: 2004-09-01T04:00:00

Updated: 2024-08-08T03:19:28.487Z

Reserved: 2002-10-21T00:00:00

Link: CVE-2002-1230

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2002-11-04T05:00:00.000

Modified: 2019-04-30T14:27:13.710

Link: CVE-2002-1230

cve-icon Redhat

No data.