CVE Number | Vulnerability | Product | Severity | Date |
---|---|---|---|---|
MS08-034 | Vulnerability in WINS Could Allow Elevation of Privilege (948745) | Microsoft Windows | Critical | 11-06-2008 |
Technical Information
Brief overview of the risk:
An elevation of privilege vulnerability exists in the Windows Internet Name Service (WINS) in the way that WINS does not sufficiently validate the data structures within specially crafted WINS network packets.
Detailed Information on the risk:
The vulnerability could allow a local attacker to run code with elevated privileges. An attacker who successfully exploited this vulnerability could take complete control of an affected system. An attacker could then install programs; view, change, or delete date; or create new accounts.Further information on this exploit is available at : MS08-034
Affected Software
Microsoft Windows 2000 Server Service Pack 2Microsoft Windows 2000 Server Service Pack 4
Microsoft Windows Server 2003 with SP1 for Itanium-based Systems
Microsoft Windows Server 2003 with SP2 for Itanium-based Systems
Microsoft Windows Server 2003 x64 Edition
Microsoft Windows Server 2003 x64 Edition Service Pack 2