SMTP: Microsoft Help Center Input Validation Vulnerability

This signature detects e-mail containing invalid HTTP links to the Microsoft Help Center. Attackers can exploit a known input validation vulnerability in Help and Support Center, by sending a victim a specially formatted HSC URL in an e-mail. This vulnerability affects Windows XP prior to service pack 2, and the Windows 2003 Server.

Extended Description

Help and Support Center in Microsoft Windows XP and Windows Server 2003 SP1 does not properly validate HCP URLs, which allows remote attackers to execute arbitrary code, as demonstrated using certain hcp:// URLs that access the DVD Upgrade capability (dvdupgrd.htm).

Affected Products

Microsoft windows_xp

Short Name
SMTP:MAL:MS-HSC-DVD-VLN
Severity
Major
Recommended
False
Recommended Action
Drop
Category
SMTP
Keywords
CVE-2004-0199 Center Help Input Microsoft Validation Vulnerability bid:10321
Release Date
05/11/2004
Supported Platforms

srx-branch-12.3

srx-19.3

srx-branch-19.3

vsrx3bsd-19.2

srx-branch-19.4

vsrx-19.4

mx-12.3

mx-19.4

vmx-19.4

mx-19.3

vsrx3bsd-19.4

srx-19.4

vsrx-12.3

vmx-19.3

vsrx-19.2

srx-12.3

Sigpack Version
3761
False Positive
Unknown
Vendors

Microsoft

CVSS Score

5.1

Found a potential security threat?