VID |
26490 |
Severity |
40 |
Port |
139,445 |
Protocol |
TCP |
Class |
SMB |
Detailed Description |
The hotfix (MS10-008, 978262) for 'Cumulative Security Update of ActiveX Kill Bits' Could has not been applied. This security update addresses a privately reported vulnerability for Microsoft software. This security update is rated Critical for all supported editions of Microsoft Windows 2000 and Windows XP, Important for all supported editions of Windows Vista and Windows 7, Moderate for all supported editions of Windows Server 2003, and Low for all supported editions of Windows Server 2008 and Windows Server 2008 R2. The vulnerability could allow remote code execution if a user views a specially crafted Web page that instantiates an ActiveX control with Internet Explorer. Users whose accounts are configured to have fewer user rights on the system could be less impacted than users who operate with administrative user rights. This update also includes kill bits for four third-party ActiveX controls.
* Note: This check requires an account with administrative privileges which can log into the host to scan. Absence of these condition will result in the check not being performed and a False Negative for all vulnerable hosts.
* References: http://www.microsoft.com/technet/security/bulletin/ms10-008.mspx
* Platforms Affected: Microsoft Windows 2000 SP4 Microsoft Windows XP SP2,SP3 Microsoft Windows XP (x64) SP2 Microsoft Windows 2003 SP2 Microsoft Windows 2003(x64) SP2 Microsoft Windows Vista SP1,SP2 Microsoft Windows Server 2008 SP2 Microsoft Windows Server 2008(x64) SP2 Microsoft Windows 7 Microsoft Windows 7(x64) Microsoft Windows Server 2008 R2(x64) Microsoft Windows Server 2008 R2 for Itanium-based Systems |
Recommendation |
Apply the appropriate patch (978262)for your system, as listed in Microsoft Security Bulletin MS10-008 at http://www.microsoft.com/technet/security/bulletin/ms10-008.mspx -- OR -- Patches for Windows platforms are also available from the Microsoft Windows Update Web site, http://windowsupdate.microsoft.com. Windows Update detects what version of Windows you are running and offers the appropriate patch. |
Related URL |
CVE-2010-0027 (CVE) |
Related URL |
37884 (SecurityFocus) |
Related URL |
(ISS) |
|