MS.IE.Media.Server.Remote.Arbitrary.File.Rewrite

description-logoDescription

Microsoft Windows Media Server has a Remote Arbitrary File Rewrite vulnerability. A remote attacker could execute arbitrary code on the system by tricking a user into visiting a specially crafted web page.

affected-products-logoAffected Products

Microsoft Internet Explorer 5.01 Service Pack 4 on Windows 2000 Service Pack 4
Microsoft Internet Explorer 6 Service Pack 1 on Windows 2000 Service Pack 4
Microsoft Internet Explorer 6 for Windows XP Service Pack 2
Microsoft Internet Explorer 6 for Windows XP Professional x64 Edition
Microsoft Internet Explorer 6 for Windows XP Professional x64 Edition Service Pack 2
Microsoft Internet Explorer 6 for Windows Server 2003 Service Pack 1
Microsoft Internet Explorer 6 for Windows Server 2003 Service Pack 2
Microsoft Internet Explorer 6 for Windows Server 2003 SP1 (Itanium)
Microsoft Internet Explorer 6 for Windows Server 2003 SP2 (Itanium)
Microsoft Internet Explorer 6 for Windows Server 2003 x64 Edition Service Pack 1
Microsoft Internet Explorer 6 for Windows Server 2003 x64 Edition Service Pack 2
Microsoft Windows Internet Explorer 7 for Windows XP Service Pack 2
Microsoft Windows Internet Explorer 7 for Windows XP Professional x64 Edition
Microsoft Windows Internet Explorer 7 for Windows XP Professional x64 Edition Service Pack 2
Microsoft Windows Internet Explorer 7 for Windows Server 2003 Service Pack 1
Microsoft Windows Internet Explorer 7 for Windows Server 2003 Service Pack 2
Microsoft Windows Internet Explorer 7 for Windows Server 2003 SP1 (Itanium)
Microsoft Windows Internet Explorer 7 for Windows Server 2003 SP2 (Itanium)
Microsoft Windows Internet Explorer 7 for Windows Server 2003 x64 Edition Service Pack 1
Microsoft Windows Internet Explorer 7 for Windows Server 2003 x64 Edition Service Pack 2
Microsoft Windows Internet Explorer 7 in Windows Vista
Microsoft Windows Internet Explorer 7 in Windows Vista x64 Edition

Impact logoImpact

System compromise, remote code execution.

recomended-action-logoRecommended Actions

Apply the patch which is available from the following web site:
http://www.microsoft.com/technet/security/bulletin/ms07-027.mspx

Telemetry logoTelemetry

Coverage

IPS (Regular DB)
IPS (Extended DB)

Version Updates

Date Version Detail
2020-10-14 16.943 Name:MS.
Media.
Server.
Remote.
Arbitrary.
File.
Rewrite:MS.
IE.
Media.
Server.
Remote.
Arbitrary.
File.
Rewrite