CVE-2005-0063 EXPLOIT
7.5
HIGH · CVSS 2.0 · EPSS 47.6% (pctl 99)
Patch early
A public exploit exists.
Description
The document processing application used by the Windows Shell in Microsoft Windows 2000, Windows XP, and Windows Server 2003 allows remote attackers to execute arbitrary code by modifying the CLSID stored in a file so that it is processed by HTML Application Host (MSHTA), as demonstrated using a Microsoft Word document.
Scoring
| CVSS | 7.5 (HIGH, v2.0) |
|---|---|
| Vector | AV:N/AC:L/Au:N/C:P/I:P/A:P |
| EPSS | 47.65% — more likely to be exploited than 99% of all CVEs |
| On CISA KEV | no |
| Public exploit | yes |
| Published | 2005-05-02 |
| Last modified | 2026-06-16 |
Affected (6)
| Vendor | Product |
|---|---|
| microsoft | windows 2000 |
| microsoft | windows 2003 server |
| microsoft | windows 98 |
| microsoft | windows 98se |
| microsoft | windows me |
| microsoft | windows xp |
Public exploits
| Source | Title | Date |
|---|---|---|
| exploit-db | Microsoft Windows - 'HTA' Script Execution (MS05-016) | 2005-04-14 |
References
- http://marc.info/?l=bugtraq&m=111755356016155&w=2
- http://www.idefense.com/application/poi/display?id=231&type=vulnerabilities
- http://www.securiteam.com/exploits/5YP0T0AFFW.html
- http://www.securityfocus.com/bid/13132
- http://www.vupen.com/english/advisories/2005/0335
- https://docs.microsoft.com/en-us/security-updates/securitybulletins/2005/ms05-016
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A2184
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A3456
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A407
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A4710
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A573
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A587
- http://marc.info/?l=bugtraq&m=111755356016155&w=2
- http://www.idefense.com/application/poi/display?id=231&type=vulnerabilities
- http://www.securiteam.com/exploits/5YP0T0AFFW.html
- http://www.securityfocus.com/bid/13132
- http://www.vupen.com/english/advisories/2005/0335
- https://docs.microsoft.com/en-us/security-updates/securitybulletins/2005/ms05-016
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A2184
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A3456
→ the Explorer · watch your stack · NVD