vendor:
Windows 2000 Server
by:
Mariano Nuñez Di Croce
7.5
CVSS
HIGH
Buffer Overflow
120
CWE
Product Name: Windows 2000 Server
Affected Version From: Windows 2000 Server SP4
Affected Version To: Windows 2000 Server SP4
Patch Exists: YES
Related CWE: N/A
CPE: o:microsoft:windows_2000_server:sp4
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: Windows
2005
Watchfire AppScan QA PoC
This PoC exploits a buffer overflow vulnerability in Windows 2000 Server SP4. It sets up a fake web server and when the server is scanned with AppScan QA, either in Interactive or Manual mode, a 'You are vulnerable!' popup is displayed.
Mitigation:
Upgrade inmediatly