Elevation of Privilege Vulnerability in Microsoft Windows LSASS - MS08-002
|ID: oval:org.secpod.oval:def:2606||Date: (C)2011-10-26 (M)2017-10-04|
|Class: PATCH||Family: windows|
The host is missing an important security update according to Microsoft security bulletin, MS08-002. The update is required to fix elevation of privilege vulnerability. A flaw is present in Microsoft Windows Local Security Authority Subsystem Service (LSASS), which fails to handle validating parameters passed to LSASS APIs. Successful exploitation allows attackers to take complete control of the affected system.
|Microsoft Windows 2000|
|Microsoft Windows Server 2003|
|Microsoft Windows Vista|
|Microsoft Windows XP|