MS07-035: Vulnerability in Win 32 API Could Allow Remote Code Execution (935839)

high Nessus Plugin ID 25488

Synopsis

Arbitrary code can be executed on the remote host through the Win32 API.

Description

The remote host contains a version of the Win32 API that is vulnerable to a security flaw that could allow a local user to gain elevated privileges, and might allow a remote attacker to execute arbitrary code on the host.

To exploit the flaw, an attacker would need to find a way to misuse the Win32 API. One way of doing so would be to lure a user on the remote host into visiting a specially crafted web page.

Solution

Microsoft has released a set of patches for Windows 2000, XP and 2003.

See Also

https://docs.microsoft.com/en-us/security-updates/SecurityBulletins/2007/ms07-035

Plugin Details

Severity: High

ID: 25488

File Name: smb_nt_ms07-035.nasl

Version: 1.32

Type: local

Agent: windows

Published: 6/12/2007

Updated: 11/15/2018

Supported Sensors: Nessus

Risk Information

VPR

Risk Factor: Medium

Score: 5.9

CVSS v2

Risk Factor: High

Base Score: 9.3

Temporal Score: 6.9

Vector: CVSS2#AV:N/AC:M/Au:N/C:C/I:C/A:C

Vulnerability Information

CPE: cpe:/o:microsoft:windows

Required KB Items: SMB/MS_Bulletin_Checks/Possible

Exploit Ease: No known exploits are available

Patch Publication Date: 6/12/2007

Vulnerability Publication Date: 6/12/2007

Reference Information

CVE: CVE-2007-2219

BID: 24370

CERT: 457281

MSFT: MS07-035

MSKB: 935839