Vulnerability Assessment & Network Security Forums



If through a vulnerability assessment, a network security issue is detected for the vulnerability below, applying the appropriate security patches in a timely matter is very important.  If you have detected that your system has already been compromised, following CERT's Network Security recovery document will assist with recommended steps for system recovery.


Home >> Browse Vulnerability Assessment Database >> Gain root remotely >> IIS ASP ISAPI filter Overflow


Vulnerability Assessment Details

IIS ASP ISAPI filter Overflow

Vulnerability Assessment Summary
Tests for a remote buffer overflow in IIS

Detailed Explanation for this Vulnerability Assessment

There's a buffer overflow in the remote web server through
the ASP ISAPI filter.

It is possible to overflow the remote web server and execute
commands as user SYSTEM.

Solution: See http://www.microsoft.com/technet/security/bulletin/ms02-018.mspx
Network Security Threat Level: High

Networks Security ID: 4478, 4485, 4490

Vulnerability Assessment Copyright: This script is Copyright (C) 2002 Renaud Deraison

Cables, Connectors

Transceiver module Cisco SFP-10G-SR=
$25.0
Transceiver module Cisco SFP-10G-SR= pictureGenuine Cisco X2-10GB-LR 10GBASE-LR X2 Gigabit LR Ethernet Module
$68.5
Genuine Cisco X2-10GB-LR 10GBASE-LR X2 Gigabit LR Ethernet Module pictureNEW Cisco Meraki MR33 Quad Radio 802.11ac 1.3 Gbps 802.3af PoE w/ 3yr License
$400.0
NEW Cisco Meraki MR33 Quad Radio 802.11ac 1.3 Gbps 802.3af PoE w/ 3yr License pictureLinksys N300 Fast Ethernet Dual-Band Wireless Router (E1200-N4) WEP, WPA2 , WPA
$56.93
Linksys N300 Fast Ethernet Dual-Band Wireless Router (E1200-N4) WEP, WPA2 , WPA picture


Discussions

No Discussions have been posted on this vulnerability.