Buffer Overflow in Windows Program Group Converter (grpconv.exe) Allows Remote Code Execution

Buffer Overflow in Windows Program Group Converter (grpconv.exe) Allows Remote Code Execution

CVE-2004-0572 · HIGH Severity

AV:N/AC:L/AU:N/C:C/I:C/A:C

Buffer overflow in the Windows Program Group Converter (grpconv.exe) may allow remote attackers to execute arbitrary code via a shell: URL with a long filename and a .grp extension, which is not properly handled when the shell capability launches grpconv.exe.

Learn more about our Web Application Penetration Testing UK.