VYPR
Unrated severityNVD Advisory· Published Apr 13, 2007· Updated Apr 23, 2026

CVE-2007-1748

CVE-2007-1748

Description

Stack-based buffer overflow in the RPC interface in the Domain Name System (DNS) Server Service in Microsoft Windows 2000 Server SP 4, Server 2003 SP 1, and Server 2003 SP 2 allows remote attackers to execute arbitrary code via a long zone name containing character constants represented by escape sequences.

Affected products

7
  • cpe:2.3:o:microsoft:windows_2000:*:sp4:*:*:*:*:*:*
  • cpe:2.3:o:microsoft:windows_2003_server:sp1:*:*:*:*:*:*:*+ 5 more
    • cpe:2.3:o:microsoft:windows_2003_server:sp1:*:*:*:*:*:*:*
    • cpe:2.3:o:microsoft:windows_2003_server:sp1:*:itanium:*:*:*:*:*
    • cpe:2.3:o:microsoft:windows_2003_server:sp1:*:x64:*:*:*:*:*
    • cpe:2.3:o:microsoft:windows_2003_server:sp2:*:*:*:*:*:*:*
    • cpe:2.3:o:microsoft:windows_2003_server:sp2:*:itanium:*:*:*:*:*
    • cpe:2.3:o:microsoft:windows_2003_server:sp2:*:x64:*:*:*:*:*

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

15

News mentions

0

No linked articles in our index yet.