Búsqueda de    
Vulnerabilidad   
    Buscar 324607 Descripciones CVE y
146377 Descripciones de Pruebas,
accesos 10,000+ referencias cruzadas.
Pruebas   CVE   Todos  

ID de Prueba:1.3.6.1.4.1.25623.1.0.13642
Categoría:Windows
Título:Buffer overrun in Windows Shell (839645)
Resumen:NOSUMMARY
Descripción:Description:

The remote host is running a version of Windows which has a flaw in
its shell. An attacker could persuade a user on the remote host to execute
a rogue program by using a CLSID instead of a file type, thus fooling
the user into thinking that he will not execute an application but simply
open a document.

Solution : http://www.microsoft.com/technet/security/bulletin/ms04-024.mspx
Risk factor : Medium

Referencia Cruzada: BugTraq ID: 9510
Common Vulnerability Exposure (CVE) ID: CVE-2004-0420
http://www.securityfocus.com/bid/9510
Bugtraq: 20040127 GOOROO CROSSING: File Spoofing Internet Explorer 6 (Google Search)
http://www.securityfocus.com/archive/1/351379
Bugtraq: 20040127 RE: GOOROO CROSSING: File Spoofing Internet Explorer 6 (Google Search)
http://www.security-express.com/archives/bugtraq/2004-01/0300.html
Cert/CC Advisory: TA04-196A
http://www.us-cert.gov/cas/techalerts/TA04-196A.html
CERT/CC vulnerability note: VU#106324
http://www.kb.cert.org/vuls/id/106324
Microsoft Security Bulletin: MS04-024
https://docs.microsoft.com/en-us/security-updates/securitybulletins/2004/ms04-024
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A2245
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A2381
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A2894
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A3386
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A3533
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A3604
http://secunia.com/advisories/10736/
XForce ISS Database: ie-clsid-file-extension-spoofing(14964)
https://exchange.xforce.ibmcloud.com/vulnerabilities/14964
CopyrightThis script is Copyright (C) 2004 Tenable Network Security

Esta es sólo una de 146377 pruebas de vulnerabilidad en nuestra serie de pruebas. Encuentre más sobre cómo ejecutar una auditoría de seguridad completa.

Para ejecutar una prueba gratuita de esta vulnerabilidad contra su sistema, regístrese ahora.




© 1998-2025 E-Soft Inc. Todos los derechos reservados.