Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Double free vulnerability in Microsoft Windows 2000, XP, 2003, and Vista allows local users to gain privileges by calling the MessageBox function with a MB_SERVICE_NOTIFICATION message with crafted data, which sends a HardError message to Client/Server Runtime Server Subsystem (CSRSS) process, which is not properly handled when invoking the UserHardError and GetHardErrorText functions in WINSRV.DLL.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Microsoft Windows CSRSS MSGBox远程代码执行漏洞(MS07-021)
Vulnerability Description
Microsoft Windows是美国微软(Microsoft)公司发布的一系列操作系统。 Windows客户端/服务器运行时子系统(CSRSS)进程处理错误消息的方式存在一个远程执行指令漏洞。攻击者可以通过构建特制的应用程序来利用此漏洞,远程执行代码。此外,如果用户查看特制的网站,成功利用此漏洞的攻击者可以完全控制受影响的系统。
CVSS Information
N/A
Vulnerability Type
N/A