CyberSec.Space Logo
返回 CVE 浏览器

CVE-2009-0086

CRITICAL
10.0
CVSS Severity Score
EPSS Score0.0560%
EPSS Percentile10.10th
Published2009年4月15日
Last Modified2026年4月23日

Vulnerability Description

Integer underflow in Windows HTTP Services (aka WinHTTP) in Microsoft Windows 2000 SP4, XP SP2 and SP3, Server 2003 SP1 and SP2, Vista Gold and SP1, and Server 2008 allows remote HTTP servers to execute arbitrary code via crafted parameter values in a response, related to error handling, aka "Windows HTTP Services Integer Underflow Vulnerability."

Affected Platforms (CPE)

💻
Microsoft

Windows 2000

All versions
💻
Microsoft

Windows Server 2003

All versions
💻
Microsoft

Windows Server 2003

All versions
💻
Microsoft

Windows Server 2003

All versions
💻
Microsoft

Windows Server 2003

All versions
💻
Microsoft

Windows Server 2008

All versions
💻
Microsoft

Windows Server 2008

All versions
💻
Microsoft

Windows Server 2008

All versions
💻
Microsoft

Windows Server 2008

All versions
💻
Microsoft

Windows Vista

All versions
💻
Microsoft

Windows Vista

All versions
💻
Microsoft

Windows Vista

All versions
💻
Microsoft

Windows Vista

= gold
💻
Microsoft

Windows Xp

All versions
💻
Microsoft

Windows Xp

All versions

References & Advisories

相关漏洞威胁