MS05-002: Cursor and Icon Format Handling Code Execution (891711)

This script is Copyright (C) 2005-2015 Tenable Network Security, Inc.

Synopsis :

Arbitrary code can be executed on the remote host through the web or
email client.

Description :

The remote host contains a version of the Windows kernel that is
affected by a security flaw in the way that cursors and icons are
handled. An attacker may be able to execute arbitrary code on the
remote host by constructing a malicious web page and entice a victim to
visit this web page. An attacker may send a malicious email to the
victim to exploit this flaw too.

See also :

Solution :

Microsoft has released a set of patches for Windows NT, 2000, XP and

Risk factor :

High / CVSS Base Score : 9.3
CVSS Temporal Score : 7.7
Public Exploit Available : true

Family: Windows : Microsoft Bulletins

Nessus Plugin ID: 16124 ()

Bugtraq ID: 12095

CVE ID: CVE-2004-1049