← Vulnerability feed

Vulnerability record · CVE-2002-1150 · published 11 October 2002

CVE-2002-1150: Microsoft netmeeting vulnerability

Microsoft · Netmeeting

The Remote Desktop Sharing (RDS) Screen Saver Protection capability for Microsoft NetMeeting 3.01 through SP2 (4.4.3396) allows attackers with physical access to hijack remote sessions by entering certain logoff or shutdown sequences (such as CTRL-ALT-DEL) and canceling out of the resulting user confirmation prompts, such as when the remote user is editing a document.

4.6 CVSS 2.0 Medium EPSS 3.8% · top 10.4%
4.6CVSS 2.0 base score
3.8%EPSS exploitation probability, 30 days
NoNot in CISA KEV
1Affected product versions listed by NVD
6References
16 Jun 2026Last modified by NVD

Description

The Remote Desktop Sharing (RDS) Screen Saver Protection capability for Microsoft NetMeeting 3.01 through SP2 (4.4.3396) allows attackers with physical access to hijack remote sessions by entering certain logoff or shutdown sequences (such as CTRL-ALT-DEL) and canceling out of the resulting user confirmation prompts, such as when the remote user is editing a document.

AV:L/AC:L/Au:N/C:P/I:P/A:P

Affected products

1 vulnerable configurations from NVD's CPE data, grouped by vendor and product.

References

Track CVE-2002-1150 inside VULONE

Watch it alongside the ransomware crews, C2 infrastructure and forum chatter that reference it, query it through the API and pull it into your SIEM over TAXII.

Start free Open in platform

Related vulnerabilities

Same products first, then exploited flaws of the same weakness class.

7.8CVE-2006-2919Microsoft netmeeting vulnerabilityUnspecified vulnerability in Microsoft NetMeeting 3.01 allows remote attackers to cause a denial of service (crash or CPU consumption) and possibly e…EPSS 23%7.5CVE-2003-0533Microsoft LSASS Active Directory Function Stack Buffer OverflowA stack-based buffer overflow exists in Active Directory service functions within LSASRV.DLL of the Local Security Authority Subsystem Service (LSASS…EPSS 85%analysed7.5CVE-2003-0719Microsoft SSL PCT handshake buffer overflow allows remote code executionThe Private Communications Transport (PCT) protocol implementation in the Microsoft SSL library contains a buffer overflow reachable via PCT 1.0 hand…EPSS 81%analysed7.5CVE-2004-0117Microsoft netmeeting vulnerabilityUnknown vulnerability in the H.323 protocol implementation in Windows 98, Windows 2000, Windows XP, and Windows Server 2003 allows remote attackers t…EPSS 27%7.5CVE-1999-0332Microsoft netmeeting memory buffer overflow vulnerabilityBuffer overflow in NetMeeting allows denial of service and remote command execution.EPSS 13%6.4CVE-1999-1097Microsoft netmeeting vulnerabilityMicrosoft NetMeeting 2.1 allows one client to read the contents of another client's clipboard via a CTRL-C in the chat box when the box is empty.EPSS 3.8%5.0CVE-2003-0505Microsoft netmeeting vulnerabilityDirectory traversal vulnerability in Microsoft NetMeeting 3.01 2000 before SP4 allows remote attackers to read arbitrary files via "..\.." (dot dot) …EPSS 14%5.0CVE-2003-0506Microsoft netmeeting vulnerabilityMicrosoft NetMeeting 3.01 2000 before SP4 allows remote attackers to cause a denial of service (shutdown of NetMeeting conference) via malformed pack…EPSS 11%

Source: NIST National Vulnerability Database (record CVE-2002-1150), CISA KEV, FIRST EPSS (scores of 2026-10-05). This page is refreshed as NVD updates the record.