Oval Definition:
oval:org.mitre.oval:def:424
Revision Date
:
2004-08-11
Version
:
41
Title
:
Windows Telnet Server Buffer Overflow
Description
:
Buffer overflow in telnet server in Windows 2000 and Interix 2.2 allows remote attackers to execute arbitrary code via malformed protocol options.
Family
:
windows
Class
:
vulnerability
Status
:
ACCEPTED
Reference(s)
:
CVE-2002-0020
Platform(s)
:
Microsoft Windows 2000
Product(s)
:
Telnet protocol
Definition Synopsis
Software section
Windows 2000 is installed
AND
the version of tlntsvr.exe is less than 5.0.33668.1
AND
NOT
Patch Q307298 Installed
AND
NOT
Windows 2000 Security Roll-up 1 Installed
AND
Configuration section
the telnet service is enabled
BACK