Visualizzazione dei risultati da 1 a 2 su 2
  1. #1

    HTTP_IIS_ISAPI_Extension

    ciao a tutti,
    oggi ho ricevuto 2 attacchi di questo tipo, ho fatto il trace(si dice cosi) e ho visto che mi hanno attaccato dall'IRAN e da Shangai


    Severity: High

    This attack could pose a serious security threat. You should take immediate action to stop any damage or prevent further damage from happening.

    Attack Category: Denial of Service

    A wide range of exploits designed to interrupt basic network functions as opposed to stealing or modifying sensitive information.

    Description

    This signature detects attempts to overflow a buffer in the ISAPI extensions of the IIS server.

    Additional Information

    This signature detects large HTTP requests made to the .ida or .idq Internet Information Server (IIS) extensions. There is the potential for a buffer overflow in the idq.dll, which runs at the System security level, when handling URL requests. Once an attacker establishes a session on the web server and causes a buffer to overflow, he/she could perform virtually any function on that server.

    c'è una correzione o posso fare qualcosa per stare + tranquillo?

  2. #2
    Patch availability
    Download locations for this patch
    Windows NT 4.0:
    http://www.microsoft.com/Downloads/R...eleaseID=30833

    Windows 2000 Professional, Server and Advanced Server:
    http://www.microsoft.com/Downloads/R...eleaseID=30800

    Windows2000 Datacenter Server:
    Patches for Windows 2000 Datacenter Server are hardware-specific and available from the original equipment manufacturer.

    dows XP beta:
    The vulnerability is eliminated beginning with Windows XP Release Candidate 1.


    io ho winXp + la sp1 perciò sto tranquillo.

Permessi di invio

  • Non puoi inserire discussioni
  • Non puoi inserire repliche
  • Non puoi inserire allegati
  • Non puoi modificare i tuoi messaggi
  •  
Powered by vBulletin® Version 4.2.1
Copyright © 2025 vBulletin Solutions, Inc. All rights reserved.