Búsqueda de    
Vulnerabilidad   
    Buscar 324607 Descripciones CVE y
145615 Descripciones de Pruebas,
accesos 10,000+ referencias cruzadas.
Pruebas   CVE   Todos  

ID de Prueba:1.3.6.1.4.1.25623.1.0.900078
Categoría:Windows : Microsoft Bulletins
Título:Cumulative Security Update for Internet Explorer (961260)
Resumen:This host is missing a critical security update according to; Microsoft Bulletin MS09-002.
Descripción:Summary:
This host is missing a critical security update according to
Microsoft Bulletin MS09-002.

Vulnerability Insight:
- An error occurs when IE browser tries to use a previously deleted object
related to CFunctionPointer.

- An error exists when XHTML strict mode is used in the zoom style directive
in conjunction with other directives within the Cascading Style Sheets (CSS)
stylesheet in a crafted HTML document.

Vulnerability Impact:
Successful exploitation results in memory corruption by executing
arbitrary code when user visits a specially crafted web page.

Affected Software/OS:
Internet Explorer 7/8 on MS Windows 2003 and XP
Internet Explorer 7 on MS Windows vista SP1 and prior
Internet Explorer 7 on MS Windows 2008 server SP1 and prior

Solution:
The vendor has released updates. Please see the references for more information.

CVSS Score:
9.3

CVSS Vector:
AV:N/AC:M/Au:N/C:C/I:C/A:C

Referencia Cruzada: Common Vulnerability Exposure (CVE) ID: CVE-2009-0075
BugTraq ID: 33627
http://www.securityfocus.com/bid/33627
Cert/CC Advisory: TA09-041A
http://www.us-cert.gov/cas/techalerts/TA09-041A.html
https://www.exploit-db.com/exploits/8077
https://www.exploit-db.com/exploits/8079
https://www.exploit-db.com/exploits/8080
https://www.exploit-db.com/exploits/8082
http://www.zerodayinitiative.com/advisories/ZDI-09-011/
Microsoft Security Bulletin: MS09-002
https://docs.microsoft.com/en-us/security-updates/securitybulletins/2009/ms09-002
http://osvdb.org/51839
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A6000
http://www.vupen.com/english/advisories/2009/0389
Common Vulnerability Exposure (CVE) ID: CVE-2009-0076
http://www.zerodayinitiative.com/advisories/ZDI-09-012/
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A6081
CopyrightCopyright (C) 2009 Greenbone AG

Esta es sólo una de 145615 pruebas de vulnerabilidad en nuestra serie de pruebas. Encuentre más sobre cómo ejecutar una auditoría de seguridad completa.

Para ejecutar una prueba gratuita de esta vulnerabilidad contra su sistema, regístrese ahora.




© 1998-2025 E-Soft Inc. Todos los derechos reservados.