Browse by Tags

All Tags>Windows Security (RSS)

Fixes released for FTP vulnerabilities by naziml

Microsoft has released security bulletin MS09-053 that will address the FTP vulnerabilities that were publicly disclosed a couple of weeks ago. The information in this bulletin supercedes the previous advisory.

[Updated] IIS FTP server vulnerabilities for FTP 5.x and FTP 6 by naziml

There have been two recently publicly disclosed vulnerabilities for FTP 5, FTP 5.1 and FTP 6. Wade has gone through great detail to explain what platforms are affected by each vulnerability in his blog post . Microsoft has released and refreshed an advisory...

Updated advisory for FTP Vulnerability on IIS by naziml

The public exposure of another vulnerability in the FTP stack has caused a revision in the Microsoft advisory. Please refer the advisory @ http://www.microsoft.com/technet/security/advisory/975191.mspx to get updated information on exposure and impact...

Update for WebDAV vulnerability on IIS 5.x and IIS 6 by naziml

We now have a security update available to address the WebDAV extension vulnerability reported earlier. All customers affected should apply the update even if they have mitigated the issue through a workaround. The background here is that we had an encoding...

Token Kidnapping fixed by naziml

I had gone into a little detail about explaining token kidnapping in an earlier post . Despite all the difficulties involved in fixing this, MS has released a comprehensive patch that addresses all the issues in MS09-012 . This was a monumental effort...

Token Kidnapping in Windows by naziml

Microsoft has just released MS09-012 to address this issue in it’s entirety. Get further details here . You have probably heard about the Token Kidnapping vulnerability in Windows and read Microsoft's security advisory on it and are wondering why there...
More Posts
Powered by Community Server (Commercial Edition), by Telligent Systems