Unrestricted file upload vulnerability in the Document Conversions Launcher Service in Microsoft Office SharePoint Server 2007 SP2, when the Document Conversions Load Balancer Service is enabled, allows remote attackers to execute arbitrary code via a crafted SOAP request to TCP port 8082, aka "Malformed Request Code Execution Vulnerability."
References
Configurations
Configuration 1 (hide)
|
History
21 Nov 2024, 01:19
Type | Values Removed | Values Added |
---|---|---|
References | () http://osvdb.org/69817 - | |
References | () http://secunia.com/advisories/42631 - Vendor Advisory | |
References | () http://www.securityfocus.com/bid/45264 - | |
References | () http://www.securitytracker.com/id?1024886 - | |
References | () http://www.us-cert.gov/cas/techalerts/TA10-348A.html - US Government Resource | |
References | () http://www.vupen.com/english/advisories/2010/3226 - Vendor Advisory | |
References | () http://www.zerodayinitiative.com/advisories/ZDI-10-287/ - | |
References | () https://docs.microsoft.com/en-us/security-updates/securitybulletins/2010/ms10-104 - | |
References | () https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A11737 - |
Information
Published : 2010-12-16 19:33
Updated : 2024-11-21 01:19
NVD link : CVE-2010-3964
Mitre link : CVE-2010-3964
CVE.ORG link : CVE-2010-3964
JSON object : View
Products Affected
microsoft
- sharepoint_server
CWE