Skip to main content

CVE-2005-0044

7.5
CVSS v2.0 Base Score
50.89%
MEDIUM RiskEPSS (98th percentile)
NVD-CWE-Other

The OLE component in Windows 98, 2000, XP, and Server 2003, and Exchange Server 5.0 through 2003, does not properly validate the lengths of messages for certain OLE data, which allows remote attackers to execute arbitrary code, aka the "Input Validation Vulnerability."

Published: 5/2/2005
Modified: 4/16/2026
Back to CVE Lookup

Vulnerability Summary

CVSS v2 Score

7.5

AV:N/AC:L/Au:N/C:P/I:P/A:P

EPSS Score (Exploitation Probability)

50.89%MEDIUM Exploitation Risk
98th percentile

This vulnerability has a 50.89% probability of being exploited in the next 30 days, ranking higher than 98% of all scored CVEs.

CWE Classification

NVD-CWE-Other