CVE-2002-0622
high · 7.5The Office Web Components (OWC) package installer for Microsoft Commerce Server 2000 allows remote attackers to execute commands by passing the commands as input to the OWC package installer, aka "OWC Package Command Execution".
7.5
CVSS
19.4%
EPSS (exploit prob.)
97th
EPSS percentile
2002-07-03
Published
AV:N/AC:L/Au:N/C:P/I:P/A:P
Affected products
| Vendor | Product | Affected versions |
|---|---|---|
| microsoft | commerce_server | 2000 |
| microsoft | commerce_server | 2000 |
| microsoft | commerce_server | 2000 |
Check a specific version with /api/v1/cve/match.
References
- http://www.iss.net/security_center/static/9425.php
- http://www.osvdb.org/5170
- http://www.securityfocus.com/bid/5111
- https://docs.microsoft.com/en-us/security-updates/securitybulletins/2002/ms02-033
- http://www.iss.net/security_center/static/9425.php
- http://www.osvdb.org/5170
- http://www.securityfocus.com/bid/5111
- https://docs.microsoft.com/en-us/security-updates/securitybulletins/2002/ms02-033
Query this programmatically:
curl https://evil-db.io/api/v1/cve/CVE-2002-0622