CVE-2005-4560 describes a critical remote code execution vulnerability in the GDI32.DLL library within Microsoft Windows 2003 Server and XP. Attackers can exploit this by crafting a malicious Windows Metafile (WMF) image containing a specially formed SETABORTPROC GDI Escape function call. This vulnerability carries a CVSS score of 7.5, indicating high severity due to its network-based attack vector, low attack complexity, and potential for complete compromise of confidentiality, integrity, and availability. While not currently in CISA's KEV catalog, exploit modules exist in Metasploit, and its EPSS score of 0.90269 suggests a high likelihood of exploitation, despite minimal community discussion or media coverage.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
enterpriseCPE matchmatch criteria | cpe:2.3:o:microsoft:windows_2003_server:enterprise:*:64-bit:*:*:*:*:* | ||
enterpriseCPE matchmatch criteria | cpe:2.3:o:microsoft:windows_2003_server:enterprise:sp1:*:*:*:*:*:* | ||
r2CPE matchmatch criteria | cpe:2.3:o:microsoft:windows_2003_server:r2:*:64-bit:*:*:*:*:* | ||
r2CPE matchmatch criteria | cpe:2.3:o:microsoft:windows_2003_server:r2:sp1:*:*:*:*:*:* | ||
standardCPE matchmatch criteria | cpe:2.3:o:microsoft:windows_2003_server:standard:*:64-bit:*:*:*:*:* |
CVSS version used by this source: 2.0
AV:N/AC:L/Au:N/C:P/I:P/A:P
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.1 Mastodon, and 0.4 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.