[Forgot Password]
Login  Register Subscribe

30389

 
 

423868

 
 

244625

 
 

909

 
 

193379

 
 

277

Paid content will be excluded from the download.


Download | Alert*
OVAL

Microsoft Internet Connection Signup Wizard remote code execution vulnerability - MS10-097

ID: oval:org.secpod.oval:def:1269Date: (C)2011-06-24   (M)2022-04-14
Class: PATCHFamily: windows




The host is missing a critical security update according to Microsoft security bulletin, MS10-097. The update is required to fix remote code execution vulnerability. A flaw is present in the Internet Connection Signup Wizard (isignup.exe), which fails to handle the loading of DLL files. Successful exploitation could allow an attacker to execute arbitrary code on the system.

Platform:
Microsoft Windows Server 2003
Microsoft Windows XP
Reference:
MS10-097
CVE-2010-3144
CVE    1
CVE-2010-3144
CPE    6
cpe:/o:microsoft:windows_2003_server::sp2:itanium
cpe:/o:microsoft:windows_xp::sp3:x86
cpe:/o:microsoft:windows_xp:-:sp2:x64
cpe:/o:microsoft:windows_xp::sp2:x64
...
XCCDF    3
xccdf_com.secpod_benchmark_microsoft-windows-xp
xccdf_scaprepo.com_benchmark_microsoft-windows-server-2003
xccdf_com.secpod_benchmark_microsoft-windows-server-2003

© SecPod Technologies