Vulnerability Assessment & Network Security Forums



If through a vulnerability assessment, a network security issue is detected for the vulnerability below, applying the appropriate security patches in a timely matter is very important.  If you have detected that your system has already been compromised, following CERT's Network Security recovery document will assist with recommended steps for system recovery.


Home >> Browse Vulnerability Assessment Database >> Windows >> Vulnerability in Web Client Service Could Allow Remote Code Execution (911927) - network check


Vulnerability Assessment Details

Vulnerability in Web Client Service Could Allow Remote Code Execution (911927) - network check

Vulnerability Assessment Summary
Acertains the presence of update 911927 - network check

Detailed Explanation for this Vulnerability Assessment

Summary :

Arbitrary code can be executed on the remote host.

Description :

The remote version of Windows contains a flaw in the Web Client service which
may permit a possible hacker to execute arbitrary code on the remote host.

To exploit this flaw, a possible hacker would need credentials to log into the
remote host.

Solution :

Microsoft has released a set of patches for Windows XP and 2003 :

http://www.microsoft.com/technet/security/bulletin/ms06-008.mspx

Network Security Threat Level:

Medium / CVSS Base Score : 4.2
(AV:R/AC:L/Au:R/C:P/I:P/A:P/B:N)

Networks Security ID: 16636

Vulnerability Assessment Copyright: This script is Copyright (C) 2006 Tenable Network Security

Cables, Connectors


Cisco C3850-NM-8-10G Network Module 8x 10GE-Lifetime Warranty picture

Cisco C3850-NM-8-10G Network Module 8x 10GE-Lifetime Warranty

$975.00



Cisco Nexus N3K-C3232C 32-Port 100GbE QSFP28 Switch -Lifetime Warranty picture

Cisco Nexus N3K-C3232C 32-Port 100GbE QSFP28 Switch -Lifetime Warranty

$1800.00



Cisco SG95-16 16-Port Gigabit Switch SG95-16-KR picture

Cisco SG95-16 16-Port Gigabit Switch SG95-16-KR

$47.99



CISCO C9400-LC-24XS Catalyst 9400 Series 24-Port 10 Gigabit Ethernet picture

CISCO C9400-LC-24XS Catalyst 9400 Series 24-Port 10 Gigabit Ethernet

$2700.00



Cisco WS-C3750X-48T-S 48 Port 3750X Gigabit Switch - Same Day Shipping picture

Cisco WS-C3750X-48T-S 48 Port 3750X Gigabit Switch - Same Day Shipping

$49.99



Cisco Catalyst 3850 48 Port Gigabit Switch 10Gig Module 405W PoE+ WS-C3850-48P-L picture

Cisco Catalyst 3850 48 Port Gigabit Switch 10Gig Module 405W PoE+ WS-C3850-48P-L

$96.79



Cisco Nexus N3K-C3064PQ-10GX 48P 10GbE SFP+ 4P QSFP+ Switch N3K-C3064PQ-10GX picture

Cisco Nexus N3K-C3064PQ-10GX 48P 10GbE SFP+ 4P QSFP+ Switch N3K-C3064PQ-10GX

$399.00



Cisco Nexus N3K-C3048TP-1GE 48 Port Switch w/ Dual Power - Same Day Shipping picture

Cisco Nexus N3K-C3048TP-1GE 48 Port Switch w/ Dual Power - Same Day Shipping

$79.99



Cisco SG500-52P 52-Port Gigabit PoE+ Stackable Managed Ethernet Switch  picture

Cisco SG500-52P 52-Port Gigabit PoE+ Stackable Managed Ethernet Switch

$93.95



Cisco N9K-C9332PQ 48-Port Nexus 9300 40G Switch w/ Dual AC - NO OS picture

Cisco N9K-C9332PQ 48-Port Nexus 9300 40G Switch w/ Dual AC - NO OS

$250.00



Discussions

No Discussions have been posted on this vulnerability.