Skip to main content

CVE-2004-0362

CVSS Score Not Available
83.40%
HIGH RiskEPSS (99th percentile)

Multiple stack-based buffer overflows in the ICQ parsing routines of the ISS Protocol Analysis Module (PAM) component, as used in various RealSecure, Proventia, and BlackICE products, allow remote attackers to execute arbitrary code via a SRV_MULTI response containing a SRV_USER_ONLINE response packet and a SRV_META_USER response packet with long (1) nickname, (2) firstname, (3) lastname, or (4) email address fields, as exploited by the Witty worm.

Published: 4/15/2004
Modified: 4/3/2025
Back to CVE Lookup

Vulnerability Summary

EPSS Score (Exploitation Probability)

83.40%HIGH Exploitation Risk
99th percentile

This vulnerability has a 83.40% probability of being exploited in the next 30 days, ranking higher than 99% of all scored CVEs.