Lucene search

K
kasperskyKaspersky LabKLA11840
HistoryMay 25, 2017 - 12:00 a.m.

KLA11840 Multiple vulnerabilities in Microsoft System Center

2017-05-2500:00:00
Kaspersky Lab
threats.kaspersky.com
10

9.3 High

CVSS2

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:M/Au:N/C:C/I:C/A:C

5.5 Medium

CVSS3

Attack Vector

LOCAL

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

REQUIRED

Scope

UNCHANGED

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

HIGH

CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H

7.2 High

AI Score

Confidence

High

0.949 High

EPSS

Percentile

99.3%

Multiple vulnerabilities were found in Microsoft System Center. Malicious users can exploit these vulnerabilities to execute arbitrary code, cause denial of service.

Below is a complete list of vulnerabilities:

  1. A remote code execution vulnerability in Microsoft Malware Protection Engine can be exploited remotely via specially crafted file to execute arbitrary code.
  2. A denial of service vulnerability in Microsoft Malware Protection Engine can be exploited remotely via specially crafted file to cause denial of service.

Original advisories

CVE-2017-8540

CVE-2017-8541

CVE-2017-8542

CVE-2017-8539

CVE-2017-8538

CVE-2017-8535

CVE-2017-8537

CVE-2017-8536

Exploitation

Public exploits exist for this vulnerability.

Malware exists for this vulnerability. Usually such malware is classified as Exploit. More details.

Related products

Microsoft-Forefront-Protection

CVE list

CVE-2017-8542 warning

CVE-2017-8541 critical

CVE-2017-8540 critical

CVE-2017-8539 warning

CVE-2017-8538 critical

CVE-2017-8537 warning

CVE-2017-8536 warning

CVE-2017-8535 warning

KB list

Solution

Install necessary updates from the KB section, that are listed in your Windows Update (Windows Update usually can be accessed from the Control Panel)

Impacts

  • ACE

Arbitrary code execution. Exploitation of vulnerabilities with this impact can lead to executing by abuser any code or commands at vulnerable machine or process.

  • DoS

Denial of service. Exploitation of vulnerabilities with this impact can lead to loss of system availability or critical functional fault.

Affected Products

  • Microsoft Forefront Endpoint Protection 2010Microsoft Endpoint ProtectionMicrosoft Forefront Endpoint ProtectionMicrosoft Security EssentialsMicrosoft System Center Endpoint Protection

9.3 High

CVSS2

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:M/Au:N/C:C/I:C/A:C

5.5 Medium

CVSS3

Attack Vector

LOCAL

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

REQUIRED

Scope

UNCHANGED

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

HIGH

CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H

7.2 High

AI Score

Confidence

High

0.949 High

EPSS

Percentile

99.3%