Summary
A flaw exists in the ISA Server DNS intrusion detection application filter.
An attacker could exploit the vulnerability by sending a specially formed request to an ISA Server computer that is publishing a DNS server, which could then result in a denial of service to the published DNS server.
Solution
see http://www.microsoft.com/technet/security/bulletin/ms03-009.mspx
Severity
Classification
-
CVE CVE-2003-0011 -
CVSS Base Score: 5.0
AV:N/AC:L/Au:N/C:N/I:N/A:P
Related Vulnerabilities
- Microsoft Exchange and Windows SMTP Service Denial of Service Vulnerability (981832)
- Microsoft Windows Kernel Information Disclosure Vulnerability (2839229)
- Microsoft SharePoint Foundation HTML Sanitisation Component XSS Vulnerability (2821818)
- Microsoft Groove Server HTML Sanitisation Component XSS Vulnerability (2821818)
- Microsoft InfoPath HTML Sanitisation Component XSS Vulnerability (2821818)