vendor:
Windows
by:
Andres Tarasco Acuna
7.5
CVSS
HIGH
Arbitrary file modification
22
CWE
Product Name: Windows
Affected Version From: Unknown
Affected Version To: Unknown
Patch Exists: YES
Related CWE: CVE-2007-1746
CPE: a:microsoft:windows
Platforms Tested:
2007
MS07-027 mdsauth.dll NMSA Session Description Object SaveAs control, arbitrary file modification
The vulnerability allows an attacker to modify arbitrary files on the system. The exploit uses the NMSA Session Description Object SaveAs control to modify the boot.ini file. This vulnerability is documented in Microsoft Security Advisory MS07-027.
Mitigation:
Apply the patch provided by Microsoft in security advisory MS07-027. Restrict access to the vulnerable control or remove it if not required.