Show plain JSON{"id": "CVE-2004-0552", "cveTags": [], "metrics": {"cvssMetricV2": [{"type": "Primary", "source": "nvd@nist.gov", "cvssData": {"version": "2.0", "baseScore": 7.5, "accessVector": "NETWORK", "vectorString": "AV:N/AC:L/Au:N/C:P/I:P/A:P", "authentication": "NONE", "integrityImpact": "PARTIAL", "accessComplexity": "LOW", "availabilityImpact": "PARTIAL", "confidentialityImpact": "PARTIAL"}, "acInsufInfo": false, "impactScore": 6.4, "baseSeverity": "HIGH", "obtainAllPrivilege": false, "exploitabilityScore": 10.0, "obtainUserPrivilege": true, "obtainOtherPrivilege": false, "userInteractionRequired": false}]}, "published": "2004-11-03T05:00:00.000", "references": [{"url": "http://www.idefense.com/application/poi/display?id=143&type=vulnerabilities", "source": "cve@mitre.org"}, {"url": "http://www.seifried.org/security/advisories/kssa-005.html", "tags": ["Exploit", "Patch", "Vendor Advisory"], "source": "cve@mitre.org"}, {"url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/17468", "source": "cve@mitre.org"}, {"url": "http://www.idefense.com/application/poi/display?id=143&type=vulnerabilities", "source": "af854a3a-2127-422b-91ae-364da2661108"}, {"url": "http://www.seifried.org/security/advisories/kssa-005.html", "tags": ["Exploit", "Patch", "Vendor Advisory"], "source": "af854a3a-2127-422b-91ae-364da2661108"}, {"url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/17468", "source": "af854a3a-2127-422b-91ae-364da2661108"}], "vulnStatus": "Deferred", "weaknesses": [{"type": "Primary", "source": "nvd@nist.gov", "description": [{"lang": "en", "value": "NVD-CWE-Other"}]}], "descriptions": [{"lang": "en", "value": "Sophos Small Business Suite 1.00 on Windows does not properly handle files whose names contain reserved MS-DOS device names such as (1) LPT1, (2) COM1, (3) AUX, (4) CON, or (5) PRN, which can allow malicious code to bypass detection when it is installed, copied, or executed."}, {"lang": "es", "value": "Sophos Small Business Suite 1.00 para Windows no maneja adecuadamente ficheros cuyos tama\u00f1os contienen nombres reservados de MS-DOS, como (1) LPT1, (2) COM1, (3) AUX, (4) CON, or (5) PRN, lo que puede permitir que c\u00f3digo malicioso evite la detecci\u00f3n cuando es instalado, copiado o ejecutado."}], "lastModified": "2025-04-03T01:03:51.193", "configurations": [{"nodes": [{"negate": false, "cpeMatch": [{"criteria": "cpe:2.3:a:sophos:small_business_suite:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "22244861-B2F3-43DB-99A3-4965003340C0", "versionEndIncluding": "1.00"}], "operator": "OR"}]}], "sourceIdentifier": "cve@mitre.org"}