nina Published in the 17:57:09
Vulnerability in Microsoft software for web sites housing is being used for a "limited attacks on the servers it is running, the company said Friday.
Microsoft opened the Internet Information Services (IIS) vulnerability on Monday and Friday, said he was still working on a security update to fix this problem. At the same time, the Advisory contains instructions for a workaround, including disabling the various elements of vulnerable FTP (File Transfer Protocol) Service to upload and download files.
In the opinion of the vulnerability let anyone could execute arbitrary code on the server using FTP on IIS 5.0 and the holding of a denial of service attack by Using FTP in IIS 5.1, 6.0 and 7.0. This version 7.5 is not affected, although FTP 7.5 can be downloaded and installed on IIS 7.0, to protect him.
"Consumers should know that in the Download Center has a FTP 7.5 is available for Windows Vista and Windows Server 2008. FTP 7.5 is not vulnerable to any of these exploits," said Alan Wallace, senior manager of communications for the Microsoft Security Team response communications, in a statement .
Initially, the company said it was investigating the vulnerability only with version 5 and 6 of IIS.
Read the full text()
| Shore comments(0) | Trackbacks(0) | Their classification:Security
Articles related:
Microsoft pushes for a single global patent system (2009-9-3 15:46:26)
Microsoft issues Advisory server deficiency (2009-9-2 18:25:43)
Windows Mobile 6.5 handsets coming Oct. 6 (2009-9-1 21:44:9)
Microsoft re-announced investigation IIS disadvantage (2009-9-1 21:21:18)
Snow Leopard: Great news for Windows 7 too (2009-9-1 20:29:2)
Cisco wireless local area networks can be attacked, 'hijacking' (2009-8-29 13:44:35)
Apple gets more attention in the HTML standards (2009-8-29 13:32:21)
Zune HD get a demo over the weekend at best buy (2009-8-22 20:41:41)
Bing strikes licensing deal with Wolfram Alpha (2009-8-22 20:25:2)
Nintendo: We killed DS lookalike app (2009-8-21 22:30:9)