Privilege Elevation Vulnerability in Windows Message Queuing Service (MSMQ) - MS09-040ID: oval:org.secpod.oval:def:2295 | Date: (C)2011-09-29 (M)2022-10-10 |
Class: PATCH | Family: windows |
The host is missing a important security update according to Microsoft security bulletin, MS09-040. The update is required to fix privilege elevation vulnerability. The flaw is present in the Windows Message Queuing Service, which fails to handle a specially crafted request sent to MSMQ service. Successful exploitation allows local users to gain user privileges via a crafted request.
Platform: |
Microsoft Windows 2000 |
Microsoft Windows Server 2003 |
Microsoft Windows Vista |
Microsoft Windows XP |
Product: |
Microsoft Windows Message Queuing Service |