DNS: Microsoft Internet Security Acceleration Arbitrary Code Execution

This signature detects attempts to exploit a known flaw inMicrosoft ISA. It is believed that it cannot be exploited for code execution.

Extended Description

Microsoft Proxy Server 2.0 and Microsoft ISA Server 2000 (which is included in Small Business Server 2000 and Small Business Server 2003 Premium Edition) allows remote attackers to spoof trusted Internet content on a specially crafted webpage via spoofed reverse DNS lookup results.

Affected Products

Microsoft isa_server

References

BugTraq: 11605

CVE: CVE-2004-0892

Short Name
DNS:MS-ISA-CE
Severity
Major
Recommended
True
Recommended Action
Drop
Category
DNS
Keywords
Acceleration Arbitrary CVE-2004-0892 Code Execution Internet Microsoft Security bid:11605
Release Date
11/19/2015
Supported Platforms

srx-branch-12.3

srx-19.3

srx-branch-19.3

vsrx3bsd-19.2

srx-branch-19.4

vsrx-19.4

mx-12.3

mx-19.4

vmx-19.4

mx-19.3

vsrx3bsd-19.4

srx-19.4

vsrx-12.3

vmx-19.3

vsrx-19.2

srx-12.3

Sigpack Version
3336
False Positive
Unknown
Vendors

Microsoft

CVSS Score

7.5

Found a potential security threat?