7.5

CVE-2004-0892

Microsoft Proxy Server 2.0 and Microsoft ISA Server 2000 (which is included in Small Business Server 2000 and Small Business Server 2003 Premium Edition) allows remote attackers to spoof trusted Internet content on a specially crafted webpage via spoofed reverse DNS lookup results.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Microsoft ≫ Isa Server Version 2000
Microsoft ≫ Isa Server Version 2000 Update sp1
Microsoft ≫ Isa Server Version 2000 Update sp2
Microsoft ≫ Proxy Server Version 2.0
Microsoft ≫ Proxy Server Version 2.0 Update sp1
Microsoft ≫ Windows 2003 Server Version 2000 Edition small_business_server
Microsoft ≫ Windows 2003 Server Version 2003 Edition small_business_server
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 17.36% 0.967
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
NIST 7.5 10 6.4
AV:N/AC:L/Au:N/C:P/I:P/A:P
Es wurden noch keine Informationen zu CWE veröffentlicht.
http://www.securityfocus.com/bid/11605
Patch
Vendor Advisory
https://docs.microsoft.com/en-us/security-updates/securitybulletins/2004/ms04-039
https://exchange.xforce.ibmcloud.com/vulnerabilities/17906
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A4264
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A4859