Anfälligkeitssuche        Suche in 219043 CVE Beschreibungen
und 99761 Test Beschreibungen,
Zugriff auf 10,000+ Quellverweise.
Tests   CVE   Alle  

Test Kennung:1.3.6.1.4.1.25623.1.0.807690
Kategorie:Windows : Microsoft Bulletins
Titel:Microsoft Windows Media Center Remote Code Execution Vulnerability (3150220)
Zusammenfassung:This host is missing an important security; update according to Microsoft Bulletin MS16-059.
Beschreibung:Summary:
This host is missing an important security
update according to Microsoft Bulletin MS16-059.

Vulnerability Insight:
The flaw exists due to an error
in the Windows Media Center which does not sanitize the input passed
via the crafted Media Center link (.mcl) file.

Vulnerability Impact:
Successful exploitation will allow remote
attackers to execute arbitrary code in the context of the currently logged-in user.
Failed exploit attempts will likely result in denial of service conditions.

Affected Software/OS:
- Microsoft Windows Media Center for

- Microsoft Windows Vista x32/x64 Service Pack 2 and prior

- Microsoft Windows 7 x32/x64 Service Pack 1 and prior

- Microsoft Windows 8.1 x32/x64

- Microsoft Windows Server 2008

- Microsoft Windows Server 2008 R2

- Microsoft Windows Server 2012 R2

Solution:
The vendor has released updates. Please see the references for more information.

CVSS Score:
9.3

CVSS Vector:
AV:N/AC:M/Au:N/C:C/I:C/A:C

Querverweis: Common Vulnerability Exposure (CVE) ID: CVE-2016-0185
BugTraq ID: 90023
http://www.securityfocus.com/bid/90023
https://www.exploit-db.com/exploits/39805/
http://www.zerodayinitiative.com/advisories/ZDI-16-277
Microsoft Security Bulletin: MS16-059
https://docs.microsoft.com/en-us/security-updates/securitybulletins/2016/ms16-059
http://www.securitytracker.com/id/1035832
CopyrightCopyright (C) 2016 Greenbone Networks GmbH

Dies ist nur einer von 99761 Anfälligkeitstests in unserem Testpaket. Finden Sie mehr über unsere vollständigen Sicherheitsüberprüfungen heraus.

Um einen gratis Test für diese Anfälligkeit auf Ihrem System durchlaufen zu lassen, registrieren Sie sich bitte unten.




© 1998-2024 E-Soft Inc. Alle Rechte vorbehalten.