CVE-2010-0028
57Vexday Risk Score
Prioritize patching. It exploitation observed by VulnCheck and has a public proof of concept.
ssvc Actepss 48%
from disclosure to weapon85 days
Published on NVDFeb 10
1st PoC+85d
VulnCheck+981d
exploitation probability
48%top 1% of all CVEs
observed exploitation
yesVulnCheck
1 public exploit(s)
Integer overflow in Microsoft Paint in Windows 2000 SP4, XP SP2 and SP3, and Server 2003 SP2 allows remote attackers to execute arbitrary code via a crafted JPEG (.JPG) file, aka "MS Paint Integer Overflow Vulnerability."
Affected products
n/a · n/apublic PoCs found — 1✓ VexDay Proof
exploitdb✓ VexDay Proofwww.exploit-db.com/exploits/12518⚠ Public resources, to assess the exposure of systems you control or are authorized to test. Test only with authorization.