CVE-2003-0903
UnknownEPSS 37.49%
Last modified
CVE-2003-0903 is a vulnerability of currently unknown severity. Buffer overflow in a component of Microsoft Data Access Components (MDAC) 2.5 through 2.8 allows remote attackers to execute arbitrary code via a malformed UDP response to a broadcast request.. EPSS estimates a 37.49% chance of exploitation in the next 30 days.
Description
Buffer overflow in a component of Microsoft Data Access Components (MDAC) 2.5 through 2.8 allows remote attackers to execute arbitrary code via a malformed UDP response to a broadcast request.
Metrics
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Microsoft | Data Access Components | 2.5 |
| Microsoft | Data Access Components | 2.6 |
| Microsoft | Data Access Components | 2.7 |
| Microsoft | Data Access Components | 2.8 |
References
- http://www.kb.cert.org/vuls/id/139150US Government Resource
- http://www.securityfocus.com/bid/9407Vendor Advisory
- http://www.kb.cert.org/vuls/id/139150US Government Resource
- http://www.securityfocus.com/bid/9407Vendor Advisory
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2003-0903?
Buffer overflow in a component of Microsoft Data Access Components (MDAC) 2.5 through 2.8 allows remote attackers to execute arbitrary code via a malformed UDP response to a broadcast request.
How severe is CVE-2003-0903?
Severity scoring for CVE-2003-0903 is pending analysis. The EPSS model estimates a 37.49% probability of exploitation in the next 30 days.
How do I fix CVE-2003-0903?
Check the vendor references and advisories linked above for patched versions and mitigation guidance. You can also run a Strix scan to test if your systems are affected.
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2003
- CVE-2003-0897"Shatter" vulnerability in CommCtl32.dll in Windows XP may a…
- CVE-2003-0898IBM DB2 7.2 before FixPak 10a, and earlier versions includin…
- CVE-2003-0899Buffer overflow in defang in libhttpd.c for thttpd 2.21 to 2…9.8
- CVE-2003-0900Perl 5.8.1 on Fedora Core does not properly initialize the r…
- CVE-2003-0901Buffer overflow in to_ascii for PostgreSQL 7.2.x, and 7.3.x …
- CVE-2003-0902Unknown vulnerability in minimalist mailing list manager 2.4…
- CVE-2003-0904Microsoft Exchange 2003 and Outlook Web Access (OWA), when c…
- CVE-2003-0905Unknown vulnerability in Windows Media Station Service and W…
- CVE-2003-0906Buffer overflow in the rendering for (1) Windows Metafile (W…
- CVE-2003-0907Help and Support Center in Microsoft Windows XP SP1 does not…
- CVE-2003-0908The Utility Manager in Microsoft Windows 2000 executes winhl…
- CVE-2003-0909Windows XP allows local users to execute arbitrary programs …
Are you affected by CVE-2003-0903?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
