Búsqueda de    
Vulnerabilidad   
    Buscar 324607 Descripciones CVE y
145615 Descripciones de Pruebas,
accesos 10,000+ referencias cruzadas.
Pruebas   CVE   Todos  

ID de Prueba:1.3.6.1.4.1.25623.1.0.902580
Categoría:Windows : Microsoft Bulletins
Título:Microsoft Host Integration Server Denial of Service Vulnerabilities (2607670)
Resumen:This host is missing an important security update according to; Microsoft Bulletin MS11-082.
Descripción:Summary:
This host is missing an important security update according to
Microsoft Bulletin MS11-082.

Vulnerability Insight:
Multiple flaws are due to input validation errors when processing
certain requests can be exploited to trigger an infinite loop, corrupt
memory and cause the snabase.exe, snaserver.exe, snalink.exe, or
mngagent.exe process to stop responding via specially crafted requests
sent to UDP port 1478 or TCP ports 1477 and 1478.

Vulnerability Impact:
Successful exploitation could allow remote attackers to cause the application
to become unresponsive or to crash, denying service to legitimate users.

Affected Software/OS:
- Microsoft Host Integration for Microsoft Windows Server 2009/2010

- Microsoft Host Integration for Microsoft Windows Server 2006 SP1 and prior

- Microsoft Host Integration for Microsoft Windows Server 2004 SP1 and prior

Solution:
The vendor has released updates. Please see the references for more information.

CVSS Score:
5.0

CVSS Vector:
AV:N/AC:L/Au:N/C:N/I:N/A:P

Referencia Cruzada: Common Vulnerability Exposure (CVE) ID: CVE-2011-2007
Microsoft Security Bulletin: MS11-082
https://docs.microsoft.com/en-us/security-updates/securitybulletins/2011/ms11-082
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A13040
Common Vulnerability Exposure (CVE) ID: CVE-2011-2008
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A12915
CopyrightCopyright (C) 2011 Greenbone AG

Esta es sólo una de 145615 pruebas de vulnerabilidad en nuestra serie de pruebas. Encuentre más sobre cómo ejecutar una auditoría de seguridad completa.

Para ejecutar una prueba gratuita de esta vulnerabilidad contra su sistema, regístrese ahora.




© 1998-2025 E-Soft Inc. Todos los derechos reservados.