2091.txt
来自「snort入侵检测规则文件2.4 Snort是众所周知的网络入侵检测工具」· 文本 代码 · 共 79 行
TXT
79 行
Rule:--Sid:2091--Summary:server is attempted.--Impact:Information disclosure.--Detailed Information:A vulnerability exists in a component used by the Microsoft Internet Information Server 5.0 implementation of WebDAV. A specially crafted overly long URI when processed by the server, triggers a buffer overflowin ntdll.dll which results in a system compromise of the targeted host.The exploit only affects versions of IIS 5.0 running on Microsoft Windows 2000 prior to service pack 3. WebDAV is enabled by default on that platform.vulnerabilities using the security scanner nessus.--Affected Systems:Microsoft Internet Information Server 5.0 WebDAV on Windows 2000 prior to Service Pack 3.--Attack Scenarios:The attacker is using nessus.--Ease of Attack:Simple--False Positives:None Known--False Negatives:None Known--Corrective Action:Apply the appropriate vendor supplied patch or service pack.--Contributors:Sourcefire Research TeamBrian Caswell <bmc@sourcefire.com>Nigel Houghton <nigel.houghton@sourcefire.com>--Additional References:Nessus:http://cgi.nessus.org/plugins/dump.php3?id=11412CERT:http://www.cert.org/advisories/CA-2003-09.htmlCVE:http://cve.mitre.org/cgi-bin/cvename.cgi?name=CAN-2003-0109Bugtraq:http://www.securityfocus.com/bid/7116Microsoft Corporation:http://www.microsoft.com/technet/treeview/default.asp?url=/technet/security/bulletin/ms03-007.asphttp://www.microsoft.com/security/security_bulletins/ms03-007.asp--
⌨️ 快捷键说明
复制代码Ctrl + C
搜索代码Ctrl + F
全屏模式F11
增大字号Ctrl + =
减小字号Ctrl + -
显示快捷键?