CVE-2010-3964 Information

Share on:

Description

Unrestricted file upload vulnerability in the Document Conversions Launcher Service in Microsoft Office SharePoint Server 2007 SP2 when the Document Conversions Load Balancer Service is enabled allows remote attackers to execute arbitrary code via a crafted SOAP request to TCP port 8082 aka \Malformed Request Code Execution Vulnerability.\

Reference

http://osvdb.org/69817 http://secunia.com/advisories/42631 http://www.securityfocus.com/bid/45264 http://www.securitytracker.com/id?1024886 http://www.us-cert.gov/cas/techalerts/TA10-348A.html http://www.vupen.com/english/advisories/2010/3226 http://www.zerodayinitiative.com/advisories/ZDI-10-287/ https://docs.microsoft.com/en-us/security-updates/securitybulletins/2010/ms10-104 https://oval.cisecurity.org/repository/search/definition/oval3Aorg.mitre.oval3Adef3A11737