Back
CVE-2004-1080
The WINS service (wins.exe) on Microsoft Windows NT Server 4.0, Windows 2000 Server, and Windows Server 2003 allows remote attackers to write to arbitrary memory locations and possibly execute arbitrary code via a modified memory pointer in a WINS replication packet to TCP port 42, aka the "Association Context Vulnerability."
Published: Jan 10, 2005
Modified: Jun 16, 2026
CVSS Metrics
Affected Products (37)
| Vendor | Product | Version |
|---|---|---|
| microsoft | windows_2000 | * |
| microsoft | windows_2000 | * |
| microsoft | windows_2000 | * |
| microsoft | windows_2000 | * |
| microsoft | windows_2000 | * |
| microsoft | windows_2003_server | 2000 |
| microsoft | windows_2003_server | 2003 |
| microsoft | windows_2003_server | enterprise |
| microsoft | windows_2003_server | enterprise_64-bit |
| microsoft | windows_2003_server | r2 |
| microsoft | windows_2003_server | r2 |
| microsoft | windows_2003_server | standard |
| microsoft | windows_2003_server | web |
| microsoft | windows_nt | 4.0 |
| microsoft | windows_nt | 4.0 |
| microsoft | windows_nt | 4.0 |
| microsoft | windows_nt | 4.0 |
| microsoft | windows_nt | 4.0 |
| microsoft | windows_nt | 4.0 |
| microsoft | windows_nt | 4.0 |
…and 17 more
GitHub Security Advisory GHSA-438w-xvxp-m9c6
The WINS service (wins.exe) on Microsoft Windows NT Server 4.0, Windows 2000 Server, and Windows...
References (36)
- http://marc.info/?l=bugtraq&m=110150370506704&w=2
- http://secunia.com/advisories/13328/
- http://securitytracker.com/id?1012516
- http://support.microsoft.com/kb/890710
- http://www.ciac.org/ciac/bulletins/p-054.shtml
- http://www.immunitysec.com/downloads/instantanea.pdf
- http://www.kb.cert.org/vuls/id/145134 Patch, Third Party Advisory, US Government Resource
- http://www.osvdb.org/12378
- http://www.securityfocus.com/bid/11763 Patch, Vendor Advisory
- http://xforce.iss.net/xforce/alerts/id/184
- https://docs.microsoft.com/en-us/security-updates/securitybulletins/2004/ms04-045
- https://exchange.xforce.ibmcloud.com/vulnerabilities/18259
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A1549
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A2541
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A2734
Risk Scores
CVSS Score
10.0 / 10
EPSS Score
79.80%
Top 0% most likely to be exploited
Threat Score
73.9 / 100
Data Sources
NVD
EPSS
GitHub