Unrestricted file upload vulnerability in the Document Conversions Launcher Service in Microsoft Office SharePoint Server 2007 SP2, when the Document Conversions Load Balancer Service is enabled, allows remote attackers to execute arbitrary code via a crafted SOAP request to TCP port 8082, aka "Malformed Request Code Execution Vulnerability."
Link | Tags |
---|---|
http://osvdb.org/69817 | vdb entry |
http://www.us-cert.gov/cas/techalerts/TA10-348A.html | third party advisory us government resource |
https://docs.microsoft.com/en-us/security-updates/securitybulletins/2010/ms10-104 | vendor advisory |
http://www.vupen.com/english/advisories/2010/3226 | vdb entry vendor advisory |
http://www.securitytracker.com/id?1024886 | vdb entry |
http://www.zerodayinitiative.com/advisories/ZDI-10-287/ | |
http://www.securityfocus.com/bid/45264 | vdb entry |
http://secunia.com/advisories/42631 | third party advisory vendor advisory |
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A11737 | signature vdb entry |