AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2004-0200

HIGH · CVSS 9.3 EPSS 49.02%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2004-09-28 · Last synced 2026-08-04

CyberRota Analysis

AI analysis pending.

CVE
CVE-2004-0200
Severity
HIGH
CVSS
9.3
EPSS
49.02%
Microsoft

Original NVD Description

Buffer overflow in the JPEG (JPG) parsing engine in the Microsoft Graphic Device Interface Plus (GDI+) component, GDIPlus.dll, allows remote attackers to execute arbitrary code via a JPEG image with a small JPEG COM field length that is normalized to a large integer length before a memory copy operation.