[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

248038

 
 

909

 
 

194772

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

Remote Code Execution Vulnerability in Indexing Service - MS09-057

ID: oval:org.secpod.oval:def:2292Date: (C)2011-09-29   (M)2022-10-10
Class: PATCHFamily: windows




The host is missing an important security update according to Microsoft security bulletin, MS09-057. The update is required to fix remote code execution vulnerability. A flaw is present in the ActiveX control included with Windows Indexing Service, which fails to handle specifically crafted Web content. Successful exploitation allows an attacker to execute arbitrary code and could take complete control of an affected system.

Platform:
Microsoft Windows 2000
Microsoft Windows XP
Microsoft Windows Server 2003
Reference:
MS09-057
CVE-2009-2507
CVE    1
CVE-2009-2507
CPE    10
cpe:/o:microsoft:windows_xp::sp3:x86
cpe:/o:microsoft:windows_2000::sp4
cpe:/o:microsoft:windows_xp::sp3
cpe:/o:microsoft:windows_xp::sp2
...
XCCDF    4
xccdf_com.secpod_benchmark_microsoft-windows-2000
xccdf_com.secpod_benchmark_microsoft-windows-server-2003
xccdf_com.secpod_benchmark_microsoft-windows-xp
xccdf_scaprepo.com_benchmark_microsoft-windows-server-2003
...

© SecPod Technologies