CVE-2003-0349 EXPLOIT
7.5
HIGH · CVSS 2.0 · EPSS 80.3% (pctl 100)
Patch early
A public exploit exists.
Description
Buffer overflow in the streaming media component for logging multicast requests in the ISAPI for the logging capability of Microsoft Windows Media Services (nsiislog.dll), as installed in IIS 5.0, allows remote attackers to execute arbitrary code via a large POST request to nsiislog.dll.
Scoring
| CVSS | 7.5 (HIGH, v2.0) |
|---|---|
| Vector | AV:N/AC:L/Au:N/C:P/I:P/A:P |
| EPSS | 80.27% — more likely to be exploited than 100% of all CVEs |
| On CISA KEV | no |
| Public exploit | yes |
| Published | 2003-07-24 |
| Last modified | 2026-06-16 |
Affected (1)
| Vendor | Product |
|---|---|
| microsoft | windows 2000 |
Public exploits
| Source | Title | Date |
|---|---|---|
| exploit-db | Microsoft IIS - ISAPI 'nsiislog.dll' ISAPI POST Overflow (MS03-022) (Metasploit) | 2010-07-25 |
| exploit-db | Microsoft Windows Media Services - Remote (MS03-022) | 2003-07-01 |
| exploit-db | Microsoft Windows NT 4.0/2000 - Media Services 'nsiislog.dll' Remote Buffer Overflow | 2003-06-25 |
References
- http://marc.info/?l=bugtraq&m=105665030925504&w=2
- http://secunia.com/advisories/9115
- http://securitytracker.com/id?1007059
- http://www.kb.cert.org/vuls/id/113716
- http://www.ntbugtraq.com/default.asp?pid=36&sid=1&A2=ind0306&L=NTBUGTRAQ&P=R4563
- https://docs.microsoft.com/en-us/security-updates/securitybulletins/2003/ms03-022
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A938
- http://marc.info/?l=bugtraq&m=105665030925504&w=2
- http://secunia.com/advisories/9115
- http://securitytracker.com/id?1007059
- http://www.kb.cert.org/vuls/id/113716
- http://www.ntbugtraq.com/default.asp?pid=36&sid=1&A2=ind0306&L=NTBUGTRAQ&P=R4563
- https://docs.microsoft.com/en-us/security-updates/securitybulletins/2003/ms03-022
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A938
→ the Explorer · watch your stack · NVD