[Forgot Password]
Login  Register Subscribe

23631

 
 

115038

 
 

96125

 
 

909

 
 

78020

 
 

109

Paid content will be excluded from the download.


Download | Alert*
OVAL

Remote Code Execution Vulnerability in Internet Information Services - MS08-006

ID: oval:org.secpod.oval:def:2655Date: (C)2011-11-02   (M)2017-10-04
Class: PATCHFamily: windows




The host is missing an important security update according to Microsoft security bulletin, MS08-006. The update is required to fix remote code execution vulnerability. A flaw is present in Internet Information Services (IIS), which fails to handle input to ASP Web pages. Successful exploitation could allow an attacker to use an account with administrative privileges and more seriously impact than IIS servers.

Platform:
Microsoft Windows 2000
Microsoft Windows XP
Product:
Microsoft Internet Information Server (IIS) 5.1
Microsoft Internet Information Server (IIS) 6.0
Reference:
MS08-006
CVE-2008-0075
CVE    1
CVE-2008-0075
CPE    9
cpe:/o:microsoft:windows_2003_server::sp1:x64
cpe:/o:microsoft:windows_2003_server::sp2:itanium
cpe:/o:microsoft:windows_xp::sp2:x64
cpe:/a:microsoft:iis:5.1
...
XCCDF    2
xccdf_com.secpod_benchmark_microsoft-windows-2000
xccdf_com.secpod_benchmark_microsoft-windows-xp

© 2013 SecPod Technologies