peter bassill · operator
$ cve CVE-2002-1142 JSON

CVE-2002-1142 EXPLOIT

7.5
HIGH · CVSS 2.0 · EPSS 76% (pctl 100)

Patch early

A public exploit exists.

Description

Heap-based buffer overflow in the Remote Data Services (RDS) component of Microsoft Data Access Components (MDAC) 2.1 through 2.6, and Internet Explorer 5.01 through 6.0, allows remote attackers to execute code via a malformed HTTP request to the Data Stub.

Scoring

CVSS7.5 (HIGH, v2.0)
VectorAV:N/AC:L/Au:N/C:P/I:P/A:P
EPSS76% — more likely to be exploited than 100% of all CVEs
On CISA KEVno
Public exploityes
Published2002-11-29
Last modified2026-06-16

Affected (3)

VendorProduct
microsoftdata access components
microsoftie
microsoftinternet explorer

Public exploits

References

→ the Explorer  ·  watch your stack  ·  NVD