BindView RAZOR Team Issues RapidFire Update for New Microsoft IIS Vulnerability

Printer-friendlyE-mail this news to a friendYour comment

BindView Corp. announced that its RAZOR Rapid Response Team has created security checks for a newly identified critical vulnerability. The new vulnerability compromises Microsoft Internet Information Servers (IIS) and all systems using Internet Explorer (IE) to browse the web. The attacks corrupt IIS servers in a manner that does not interfere with their operation, instead causing IE clients that browse the web server's content to become infected themselves. The newly discovered vulnerability appears to have exceedingly destructive capabilities, and rapid exploitation is expected.

BindView customers on current maintenance contracts running Vulnerability Management solutions that include bv-Control for Windows can take immediate protective action. BindView's RapidFire Update Service provides customers with immediate access to the update via automatic distribution, or customers can download the new updates online at http://www.bindview.com/Advisories/ADV_MSFT04-062504.cfm

Who is at Risk

Nearly every organization using IIS or IE is at risk. Microsoft has reported that the MS04-011 patch alert prevents the compromise of Windows 2000 servers running IIS. Other reports contradict Microsoft, and BindView cannot at this time confirm either.

BindView has created vulnerability checks for bv-Control for Windows to assist customers in locating compromised systems. Once these systems are identified, customers should proceed with the outlined precautionary measures as quickly as possible.

Commentary on the IIS Vulnerability

BindView RAZOR Team experts are available to discuss these new vulnerabilities and share further insight into organizations most at risk, potential outcomes of an attack, as well as additional ways to secure enterprise IT infrastructures. Experts can also discuss the growing number of system vulnerabilities that have been identified in the past few months.

28.06.2004, BindView Corp.




Comments on this news 


Write your comment on this news

Subscribe to the newsletter

Never miss a story and stay informed with our newsletter.
Your email:  
RSS-Feed: All current newsOur News on your website

More current news

VASCO gives an answer to security concerns when deploying Software as a Service (SaaS)
Making penetration testing work
Double trouble, as new Facebook worm targets Google Reader
Wipro and Fortify Software Form Partnership to Assure the Security of Client Software Worldwide
VASCO launches PKI-based authentication solution

News on other topics

SharePartXXL has released Version 2.0 of the Taxonomy Extension for WSS/MOSS
RTL, VOX and SUPER RTL operate communication portals with CONTENS
Finally: A professional Open Source Digital Asset Management (DAM)
Pentland selects FirstSpirit for global web content management
ContentServ has successfully extended its International Partner Network in 2008

Aktfotografie
The Content Management PortalThe Document Management PortalThe IT Security PortalThe Customer Relationship Management PortalThe E-Commerce PortalThe Enterprise Resource Planning PortalPortal on VoIP and mobile communication The directory of Clinic IT SolutionsThe directory for IT professionals
homeimprintprivacy policycontactadvertising

know how

news

events

security alerts

Quick search