Most Popular
| Top Stories | Commented | Featured |
Weekend Open Forum: Have you upgraded to Windows 7 yet? What is there to like/not? featured
Tech Tip of The Week: Turn Off your Display Using a Windows Shortcut and More featured
Netflix PS3 streaming arrives tomorrow
Dell's ultra-thin Adamo XPS to ship soon for $1,799
Windows 7 crushed Vista in early launch sales
AMD and PC vendors delay products amid GPU shortage
TS Community
| User Gallery | Recent Discussion |
Sending Settings by VicRic | Tsunami by olefarte |
VTR Bike by bnreddy | P1160759 by darkman3d |
Information Technology
Proof of concept code released for patched vulnerability in Windows
As a reminder of how important it is to keep up with software and security updates, exploit code has been released that demonstrates the potential for a (currently patched) flaw to result in system compromise. The flaw, affecting the Remote Access Connection Manager service, was fixed this month as part of the standard security rollouts Microsoft offers. The published proof of concept code that can cause the compromise affects Windows 2000, XP and Server 2003, but the machines most at risk would be Windows 2000 Professional and Windows 2000 Server. Sadly, those are the two operating systems least likely to be up to date in most corporations.
Secunia classifies these threats as “highly critical”, and given that a large amount of servers in the world run Windows 2000, it's important to keep them updated. Many IT admins will delay patching a machine to verify that a given patch will be compatible with their systems. A good practice, but one that can unfortunately leave a machine vulnerable longer than it has to be. The security bulletin is available on Technet.
Secunia classifies these threats as “highly critical”, and given that a large amount of servers in the world run Windows 2000, it's important to keep them updated. Many IT admins will delay patching a machine to verify that a given patch will be compatible with their systems. A good practice, but one that can unfortunately leave a machine vulnerable longer than it has to be. The security bulletin is available on Technet.
Related Stories
TechSpot RSS



