CVE-2004-0552 EXPLOIT
7.5
HIGH · CVSS 2.0 · EPSS 23.9% (pctl 98)
Patch early
A public exploit exists.
Description
Sophos Small Business Suite 1.00 on Windows does not properly handle files whose names contain reserved MS-DOS device names such as (1) LPT1, (2) COM1, (3) AUX, (4) CON, or (5) PRN, which can allow malicious code to bypass detection when it is installed, copied, or executed.
Scoring
| CVSS | 7.5 (HIGH, v2.0) |
|---|---|
| Vector | AV:N/AC:L/Au:N/C:P/I:P/A:P |
| EPSS | 23.87% — more likely to be exploited than 98% of all CVEs |
| On CISA KEV | no |
| Public exploit | yes |
| Published | 2004-11-03 |
| Last modified | 2026-06-16 |
Affected (1)
| Vendor | Product |
|---|---|
| sophos | small business suite |
Public exploits
| Source | Title | Date |
|---|---|---|
| exploit-db | Sophos Anti-Virus 3.x - Reserved MS-DOS Name Scan Evasion | 2004-09-22 |
References
- http://www.idefense.com/application/poi/display?id=143&type=vulnerabilities
- http://www.seifried.org/security/advisories/kssa-005.html
- https://exchange.xforce.ibmcloud.com/vulnerabilities/17468
- http://www.idefense.com/application/poi/display?id=143&type=vulnerabilities
- http://www.seifried.org/security/advisories/kssa-005.html
- https://exchange.xforce.ibmcloud.com/vulnerabilities/17468
→ the Explorer · watch your stack · NVD