Anfälligkeitssuche        Suche in 324607 CVE Beschreibungen
und 145615 Test Beschreibungen,
Zugriff auf 10,000+ Quellverweise.
Tests   CVE   Alle  

Test Kennung:1.3.6.1.4.1.25623.1.0.802897
Kategorie:Web Servers
Titel:Microsoft Windows Media Services ISAPI Extension Code Execution Vulnerabilities - Active Check
Zusammenfassung:Microsoft Windows Media Services is prone to remote code execution vulnerabilities.
Beschreibung:Summary:
Microsoft Windows Media Services is prone to remote code execution vulnerabilities.

Vulnerability Insight:
Windows Media Services logging capability for multicast transmissions is
implemented as ISAPI extension (nsiislog.dll), which fails to processes
incoming client or malicious HTTP requests.

Vulnerability Impact:
Successful exploitation could allow remote attackers to obtain sensitive
information, execute arbitrary code or cause denial of service conditions.

Affected Software/OS:
- Microsoft Windows Media Services 4.0 and 4.1

- Microsoft Windows NT 4.0

- Microsoft Windows 2000

Solution:
The vendor has released updates. Please see the references for more information.

CVSS Score:
7.5

CVSS Vector:
AV:N/AC:L/Au:N/C:P/I:P/A:P

Querverweis: Common Vulnerability Exposure (CVE) ID: CVE-2003-0227
Bugtraq: 20030528 RE: Alert: MS03-019, Microsoft... wrong, again. (Google Search)
http://marc.info/?l=bugtraq&m=105427615626177&w=2
Microsoft Security Bulletin: MS03-019
https://docs.microsoft.com/en-us/security-updates/securitybulletins/2003/ms03-019
http://marc.info/?l=ntbugtraq&m=105421176432011&w=2
http://marc.info/?l=ntbugtraq&m=105421127531558&w=2
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A936
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A966
Common Vulnerability Exposure (CVE) ID: CVE-2003-0349
Bugtraq: 20030626 Windows Media Services Remote Command Execution #2 (Google Search)
http://marc.info/?l=bugtraq&m=105665030925504&w=2
CERT/CC vulnerability note: VU#113716
http://www.kb.cert.org/vuls/id/113716
Microsoft Security Bulletin: MS03-022
https://docs.microsoft.com/en-us/security-updates/securitybulletins/2003/ms03-022
http://www.ntbugtraq.com/default.asp?pid=36&sid=1&A2=ind0306&L=NTBUGTRAQ&P=R4563
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A938
http://securitytracker.com/id?1007059
http://secunia.com/advisories/9115
CopyrightCopyright (C) 2012 Greenbone AG

Dies ist nur einer von 145615 Anfälligkeitstests in unserem Testpaket. Finden Sie mehr über unsere vollständigen Sicherheitsüberprüfungen heraus.

Um einen gratis Test für diese Anfälligkeit auf Ihrem System durchlaufen zu lassen, registrieren Sie sich bitte unten.




© 1998-2025 E-Soft Inc. Alle Rechte vorbehalten.