CVE-2005-0044
7.5
CVSS v2.0 Base Score
50.89%
MEDIUM RiskEPSS (98th percentile)
NVD-CWE-Other
The OLE component in Windows 98, 2000, XP, and Server 2003, and Exchange Server 5.0 through 2003, does not properly validate the lengths of messages for certain OLE data, which allows remote attackers to execute arbitrary code, aka the "Input Validation Vulnerability."
Published: 5/2/2005
Modified: 4/16/2026
Vulnerability Summary
CVSS v2 Score
7.5
AV:N/AC:L/Au:N/C:P/I:P/A:P
EPSS Score (Exploitation Probability)
50.89%MEDIUM Exploitation Risk
98th percentile
This vulnerability has a 50.89% probability of being exploited in the next 30 days, ranking higher than 98% of all scored CVEs.
CWE Classification
NVD-CWE-Other