|
Family: Gain a shell remotely --> Category: attack
shtml.exe overflow Vulnerability Scan
Vulnerability Scan Summary Searches for the existence of shtml.exe
Detailed Explanation for this Vulnerability Test
The remote host has FrontPage Server Extensions (FPSE) installed.
There is a denial of service / buffer overflow condition
in the program 'shtml.exe' which comes with it. However,
no public detail has been given regarding this issue yet,
so it's not possible to remotely acertain if you are
vulnerable to this flaw or not.
If you are, a possible hacker may use it to crash your web server
(FPSE 2000) or execute arbitrary code (FPSE 2002). Please
see the Microsoft Security Bulletin MS02-053 to acertain
if you are vulnerable or not.
Solution : See http://www.microsoft.com/technet/security/bulletin/ms02-053.mspx
Threat Level: High
Click HERE for more information and discussions on this network vulnerability scan.
|