Executive Summary
Informations | |||
---|---|---|---|
Name | MS05-049 | First vendor Publication | N/A |
Vendor | Microsoft | Last vendor Modification | N/A |
Severity (Vendor) | N/A | Revision | N/A |
Security-Database Scoring CVSS v3
Cvss vector : N/A | |||
---|---|---|---|
Overall CVSS Score | NA | ||
Base Score | NA | Environmental Score | NA |
impact SubScore | NA | Temporal Score | NA |
Exploitabality Sub Score | NA | ||
Calculate full CVSS 3.0 Vectors scores |
Security-Database Scoring CVSS v2
Cvss vector : (AV:N/AC:L/Au:N/C:C/I:C/A:C) | |||
---|---|---|---|
Cvss Base Score | 10 | Attack Range | Network |
Cvss Impact Score | 10 | Attack Complexity | Low |
Cvss Expoit Score | 10 | Authentication | None Required |
Calculate full CVSS 2.0 Vectors scores |
Detail
Vulnerabilities in Windows Shell Could Allow Remote Code Execution (900725) |
OVAL Definitions
Definition Id: oval:org.mitre.oval:def:1116 | |||
Oval ID: | oval:org.mitre.oval:def:1116 | ||
Title: | .lnk File-Properties Remote Code Execution Vulnerability (Windows XP) | ||
Description: | Windows Shell for Microsoft Windows 2000 SP4, XP SP1 and SP2, and Server 2003 allows remote user-assisted attackers to execute arbitrary commands via a crafted shortcut (.lnk) file with long font properties that lead to a buffer overflow when the user views the file's properties using Windows Explorer, a different vulnerability than CVE-2005-2122. | ||
Family: | windows | Class: | vulnerability |
Reference(s): | CVE-2005-2118 | Version: | 5 |
Platform(s): | Microsoft Windows XP | Product(s): | |
Definition Synopsis: | |||
|
Definition Id: oval:org.mitre.oval:def:1192 | |||
Oval ID: | oval:org.mitre.oval:def:1192 | ||
Title: | .lnk File-Properties Remote Code Execution Vulnerability (Windows 2000) | ||
Description: | Windows Shell for Microsoft Windows 2000 SP4, XP SP1 and SP2, and Server 2003 allows remote user-assisted attackers to execute arbitrary commands via a crafted shortcut (.lnk) file with long font properties that lead to a buffer overflow when the user views the file's properties using Windows Explorer, a different vulnerability than CVE-2005-2122. | ||
Family: | windows | Class: | vulnerability |
Reference(s): | CVE-2005-2118 | Version: | 6 |
Platform(s): | Microsoft Windows 2000 | Product(s): | |
Definition Synopsis: | |||
Definition Id: oval:org.mitre.oval:def:1291 | |||
Oval ID: | oval:org.mitre.oval:def:1291 | ||
Title: | Windows Explorer Web View Script Injection Vulnerability | ||
Description: | Web View in Windows Explorer on Microsoft Windows 2000 SP4, XP SP1 and SP2, and Server 2003 does not properly handle certain HTML characters in preview fields, which allows remote user-assisted attackers to execute arbitrary code. | ||
Family: | windows | Class: | vulnerability |
Reference(s): | CVE-2005-2117 | Version: | 6 |
Platform(s): | Microsoft Windows 2000 | Product(s): | |
Definition Synopsis: | |||
Definition Id: oval:org.mitre.oval:def:1329 | |||
Oval ID: | oval:org.mitre.oval:def:1329 | ||
Title: | .lnk File-Open Remote Code Execution Vulnerability (XP,SP1) | ||
Description: | Windows Shell for Microsoft Windows 2000 SP4, XP SP1 and SP2, and Server 2003 allows remote attackers to execute arbitrary commands via a shortcut (.lnk) file with long font properties that lead to a buffer overflow in the Client/Server Runtime Server Subsystem (CSRSS), a different vulnerability than CVE-2005-2118. | ||
Family: | windows | Class: | vulnerability |
Reference(s): | CVE-2005-2122 | Version: | 5 |
Platform(s): | Microsoft Windows XP | Product(s): | |
Definition Synopsis: | |||
|
Definition Id: oval:org.mitre.oval:def:1488 | |||
Oval ID: | oval:org.mitre.oval:def:1488 | ||
Title: | .lnk File-Open Remote Code Execution Vulnerability (Windows 2000,SP4) | ||
Description: | Windows Shell for Microsoft Windows 2000 SP4, XP SP1 and SP2, and Server 2003 allows remote attackers to execute arbitrary commands via a shortcut (.lnk) file with long font properties that lead to a buffer overflow in the Client/Server Runtime Server Subsystem (CSRSS), a different vulnerability than CVE-2005-2118. | ||
Family: | windows | Class: | vulnerability |
Reference(s): | CVE-2005-2122 | Version: | 6 |
Platform(s): | Microsoft Windows 2000 | Product(s): | |
Definition Synopsis: | |||
Definition Id: oval:org.mitre.oval:def:1517 | |||
Oval ID: | oval:org.mitre.oval:def:1517 | ||
Title: | .lnk File-Open Remote Code Execution Vulnerability (XP,SP2) | ||
Description: | Windows Shell for Microsoft Windows 2000 SP4, XP SP1 and SP2, and Server 2003 allows remote attackers to execute arbitrary commands via a shortcut (.lnk) file with long font properties that lead to a buffer overflow in the Client/Server Runtime Server Subsystem (CSRSS), a different vulnerability than CVE-2005-2118. | ||
Family: | windows | Class: | vulnerability |
Reference(s): | CVE-2005-2122 | Version: | 6 |
Platform(s): | Microsoft Windows XP | Product(s): | |
Definition Synopsis: | |||
|
Definition Id: oval:org.mitre.oval:def:1537 | |||
Oval ID: | oval:org.mitre.oval:def:1537 | ||
Title: | .lnk File-Open Remote Code Execution Vulnerability (Server 2003) | ||
Description: | Windows Shell for Microsoft Windows 2000 SP4, XP SP1 and SP2, and Server 2003 allows remote attackers to execute arbitrary commands via a shortcut (.lnk) file with long font properties that lead to a buffer overflow in the Client/Server Runtime Server Subsystem (CSRSS), a different vulnerability than CVE-2005-2118. | ||
Family: | windows | Class: | vulnerability |
Reference(s): | CVE-2005-2122 | Version: | 6 |
Platform(s): | Microsoft Windows Server 2003 | Product(s): | |
Definition Synopsis: | |||
Definition Id: oval:org.mitre.oval:def:1551 | |||
Oval ID: | oval:org.mitre.oval:def:1551 | ||
Title: | .lnk File-Open Remote Code Execution Vulnerability (Server 2003,SP1) | ||
Description: | Windows Shell for Microsoft Windows 2000 SP4, XP SP1 and SP2, and Server 2003 allows remote attackers to execute arbitrary commands via a shortcut (.lnk) file with long font properties that lead to a buffer overflow in the Client/Server Runtime Server Subsystem (CSRSS), a different vulnerability than CVE-2005-2118. | ||
Family: | windows | Class: | vulnerability |
Reference(s): | CVE-2005-2122 | Version: | 5 |
Platform(s): | Microsoft Windows Server 2003 | Product(s): | |
Definition Synopsis: | |||
Definition Id: oval:org.mitre.oval:def:708 | |||
Oval ID: | oval:org.mitre.oval:def:708 | ||
Title: | .lnk File-Open Remote Code Execution Vulnerability (64-bit XP,SP1) | ||
Description: | Windows Shell for Microsoft Windows 2000 SP4, XP SP1 and SP2, and Server 2003 allows remote attackers to execute arbitrary commands via a shortcut (.lnk) file with long font properties that lead to a buffer overflow in the Client/Server Runtime Server Subsystem (CSRSS), a different vulnerability than CVE-2005-2118. | ||
Family: | windows | Class: | vulnerability |
Reference(s): | CVE-2005-2122 | Version: | 5 |
Platform(s): | Microsoft Windows XP | Product(s): | |
Definition Synopsis: | |||
CPE : Common Platform Enumeration
Open Source Vulnerability Database (OSVDB)
Id | Description |
---|---|
19900 | Microsoft Windows Shell Crafted .lnk File Arbitrary Code Execution (2005-2122) |
19899 | Microsoft Windows Shell Crafted .lnk File Arbitrary Code Execution (2005-2118) |
19898 | Microsoft Windows Web View Arbitrary Script Injection |
Snort® IPS/IDS
Date | Description |
---|---|
2014-01-10 | Microsoft Windows malformed shortcut file with comment buffer overflow attempt RuleID : 4644 - Revision : 18 - Type : OS-WINDOWS |
2014-01-10 | Microsoft Windows malformed shortcut file buffer overflow attempt RuleID : 4643 - Revision : 21 - Type : OS-WINDOWS |
2014-01-10 | Microsoft Windows malformed shortcut file with comment buffer overflow attempt RuleID : 27719 - Revision : 3 - Type : OS-WINDOWS |
2014-01-10 | Microsoft Windows malformed shortcut file buffer overflow attempt RuleID : 27718 - Revision : 3 - Type : OS-WINDOWS |
2014-01-10 | Microsoft Windows download of .lnk file that executes cmd.exe detected RuleID : 17442 - Revision : 13 - Type : FILE-OTHER |
Nessus® Vulnerability Scanner
Date | Description |
---|---|
2005-10-11 | Name : Vulnerabilities in the Windows Shell could allow an attacker to execute arbit... File : smb_nt_ms05-049.nasl - Type : ACT_GATHER_INFO |
Alert History
Date | Informations |
---|---|
2014-02-17 11:45:16 |
|
2014-01-19 21:29:56 |
|