![]() |
Startseite ▼ Bookkeeping
Online ▼ Sicherheits
Überprüfungs ▼
Verwaltetes
DNS ▼
Info
Bestellen/Erneuern
FAQ
AUP
Dynamic DNS Clients
Domaine konfigurieren Dyanmic DNS Update Password Netzwerk
Überwachung ▼
Enterprise
Erweiterte
Standard
Gratis Test
FAQ
Preis/Funktionszusammenfassung
Bestellen
Beispiele
Konfigurieren/Status Alarm Profile | ||
Test Kennung: | 1.3.6.1.4.1.25623.1.0.10835 |
Kategorie: | Windows : Microsoft Bulletins |
Titel: | Microsoft Windows XP Multiple Vulnerabilities (MS01-059, Q315000) |
Zusammenfassung: | Microsoft Windows XP is prone to multiple vulnerabilities. |
Beschreibung: | Summary: Microsoft Windows XP is prone to multiple vulnerabilities. Vulnerability Insight: The following flaws exist: - CVE-2001-0876: Buffer overflow in Universal Plug and Play (UPnP) allows remote attackers to execute arbitrary code via a NOTIFY directive with a long Location URL. - CVE-2001-0877: Universal Plug and Play (UPnP) allows remote attackers to cause a denial of service via a spoofed SSDP advertisement that causes the client to connect to a service on another machine that generates a large amount of traffic (e.g., chargen), or via a spoofed SSDP announcement to broadcast or multicast addresses, which could cause all UPnP clients to send traffic to a single target system. Solution: The vendor has released updates. Please see the references for more information. CVSS Score: 7.5 CVSS Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P |
Querverweis: |
Common Vulnerability Exposure (CVE) ID: CVE-2001-0876 BugTraq ID: 3723 http://www.securityfocus.com/bid/3723 Bugtraq: 20011220 Multiple Remote Windows XP/ME/98 Vulnerabilities (Google Search) http://marc.info/?l=bugtraq&m=100887440810532&w=2 http://www.cert.org/advisories/CA-2001-37.html CERT/CC vulnerability note: VU#951555 http://www.kb.cert.org/vuls/id/951555 Computer Incident Advisory Center Bulletin: M-030 http://www.ciac.org/ciac/bulletins/m-030.shtml Microsoft Security Bulletin: MS01-059 https://docs.microsoft.com/en-us/security-updates/securitybulletins/2001/ms01-059 http://marc.info/?l=ntbugtraq&m=100887271006313&w=2 XForce ISS Database: win-upnp-notify-bo(7721) https://exchange.xforce.ibmcloud.com/vulnerabilities/7721 Common Vulnerability Exposure (CVE) ID: CVE-2001-0877 BugTraq ID: 3724 http://www.securityfocus.com/bid/3724 Bugtraq: 20020109 UPNP Denial of Service (Google Search) http://www.securityfocus.com/archive/1/249238 CERT/CC vulnerability note: VU#411059 http://www.kb.cert.org/vuls/id/411059 XForce ISS Database: win-upnp-udp-dos(7722) https://exchange.xforce.ibmcloud.com/vulnerabilities/7722 |
Copyright | Copyright (C) 2002 Michael Scheidell |
Dies ist nur einer von 145615 Anfälligkeitstests in unserem Testpaket. Finden Sie mehr über unsere vollständigen Sicherheitsüberprüfungen heraus. Um einen gratis Test für diese Anfälligkeit auf Ihrem System durchlaufen zu lassen, registrieren Sie sich bitte unten. |