vendor:
Microsoft Message Queue
by:
Mario Ballano, Andres Tarasco
7.5
CVSS
HIGH
Buffer Overflow
119
CWE
Product Name: Microsoft Message Queue
Affected Version From: Windows 2000 Advanced server SP4
Affected Version To: Windows 2000 Advanced server SP4
Patch Exists: YES
Related CWE: CVE-2007-3039
CPE: o:microsoft:windows_2000
Platforms Tested: Windows 2000 Advanced server SP4
2007
Microsoft Message Queue POC exploit ( MS07-065 )
This is a proof-of-concept exploit for the Microsoft Message Queue vulnerability (MS07-065). The vulnerability allows for a buffer overflow attack, which can potentially lead to remote code execution. The exploit code provided is designed to target Windows 2000 Advanced server SP4.
Mitigation:
Apply the security patch provided by Microsoft for MS07-065. Ensure that all affected systems are updated to the latest version. Implement proper network security measures to limit exposure.