microsoft windows-2000 CVE-2009-2523 is a vulnerability in Microsoft Windows 2000
Published on November 11, 2009

The License Logging Server (llssrv.exe) in Microsoft Windows 2000 SP4 allows remote attackers to execute arbitrary code via an RPC message containing a string without a null terminator, which triggers a heap-based buffer overflow in the LlsrLicenseRequestW method, aka "License Logging Server Heap Overflow Vulnerability."

Vendor Advisory NVD


Products Associated with CVE-2009-2523

Want to know whenever a new CVE is published for Microsoft Windows 2000? stack.watch will email you.

 

Exploit Probability

EPSS
11.46%
Percentile
93.48%

EPSS (Exploit Prediction Scoring System) scores estimate the probability that a vulnerability will be exploited in the wild within the next 30 days. The percentile shows you how this score compares to all other vulnerabilities.