<< Back
CVE Number Vulnerability Product Severity Date
MS07-062 Vulnerability in DNS Could Allow Spoofing (941672) Microsoft Windows Critical 14-11-2007

Technical Information

Brief overview of the risk:
This spoofing vulnerability exists in Windows DNS Servers and could allow an attacker to send specially crafted responses to DNS requests, thereby spoofing or redirecting Internet traffic from legitimate locations.
Detailed Information on the risk:
There is a flaw in the remote version of this server which may allow an attacker to spoof DNS responses. By exploiting this flaw an attacker may be able to redirect legitimate traffic from other systems that could allow him to construct more complex attacks.Further information on this exploit is available at : MS07-062

Affected Software

Microsoft Windows Server 2003 Service Pack 1
Microsoft Windows Server 2003 Service Pack 2
Microsoft Windows Server 2003 with SP1 for Itanium-based Systems
Microsoft Windows Server 2003 with SP2 for Itanium-based Systems
Microsoft Windows Server 2003 x64 Edition
Microsoft Windows Server 2003 x64 Edition Service Pack 2
Microsoft Windows 2000 Server Service Pack 4