navigation
a webmaster learning community
     Home    Register     Search      Help      Login    
FrontPage Alternative
Sponsors

Shopping Cart Software
Ecommerce software integrated into Frontpage, Dreamweaver and Golive templates. No monthly fees and available in ASP and PHP versions.

Website Templates
We also have a wide selection of Dreamweaver, Expression Web and Frontpage templates as well as webmaster tools and CSS layouts.

Frontpage website templates
Creative Website Templates for FrontPage, Dreamweaver, Flash, SwishMax

Search Forums
 

Advanced search
Recent Posts

 Todays Posts
 Most Active posts
 Posts since last visit
 My Recent Posts
 Mark posts read

 

MAJOR " Heads-Up!" Extensions Vulnerability

 
View related threads: (in this forum | in all forums)

Logged in as: Guest
Users viewing this topic: none
Printable Version 

All Forums >> Web Development >> Server Issues >> MAJOR " Heads-Up!" Extensions Vulnerability
Page: [1]
 
Rian

 

Posts: 1960
From: Lincoln, Nebraska USA
Status: offline

 
MAJOR " Heads-Up!" Extensions Vulnerability - 9/27/2002 1:19:32   
This one is potentially really bad...... We may see many haked sites/servers in months to come.....

quote:

Summary
Who should read this bulletin: Web site administrators using Microsoft® FrontPage Server Extensions

Impact of vulnerability: Buffer overrun or denial of service

Maximum Severity Rating: Critical

Recommendation: Web site administrators should apply the patch or ensure that the SmartHTML Interpreter is not available on the server.

Affected Software:

Microsoft FrontPage Server Extensions 2000
Microsoft FrontPage Server Extensions 2002
Microsoft Windows 2000 (shipped FPSE 2000)
Microsoft Windows XP (shipped FPSE 2000)


http://www.microsoft.com/technet/treeview/default.asp?url=/technet/security/bulletin/MS02-053.asp


The fun just never stops!

Rian [:j]

_____________________________

" Designing The Future"
SR Web Creators
www.srwebcreators.com

" What boots up must come down..."
Shirley

 

Posts: 3127
Joined: 1/8/1999
From: Omaha, Ne USA
Status: offline

 
RE: MAJOR " Heads-Up!" Extensions Vulnerability - 9/27/2002 3:48:21   
Thanks!!

_____________________________


Everything But Cake


(in reply to Rian)
storm

 

Posts: 421
Status: offline

 
RE: MAJOR " Heads-Up!" Extensions Vulnerability - 9/27/2002 6:48:09   
Thanks Rian. One more thing to add to the list sheeesh.....

_____________________________

storm..." Someone put forth the proposition that you can petition the lord with prayer, petition the lord with prayer, petition the lord with prayer...YOU CANNOT PETITION THE LORD WITH PRAYER"

(in reply to Rian)
rdouglass

 

Posts: 9280
From: Biddeford, ME USA
Status: offline

 
RE: MAJOR " Heads-Up!" Extensions Vulnerability - 9/27/2002 12:57:24   
OOPS! Didn' t see your post here. I posted a similar bulletin in the longe....:)

...what will they think of next...[:' (]

(in reply to Rian)
Peppergal

 

Posts: 2207
Joined: 9/20/2002
Status: offline

 
RE: MAJOR " Heads-Up!" Extensions Vulnerability - 9/27/2002 13:03:24   
Quick question: is this something we have to install in front page like software, or is it something we will have to upload to existing websites?

Please forgive my ignorance.

If I have a website that doesn' t use forms will it still be vulnerable? One of my sites has message boards; but that' s just my own personal " fun" site and wouldnt' be a big deal if anything happened to it.

_____________________________

Northeast PA / Poconos/ Lake Wallenpaupack Real Estate
wallenpaupacklakeproperty.com
Karen's Real Estate Blog

(in reply to Rian)
Doug G

 

Posts: 1189
Joined: 12/29/2001
From: SoCal
Status: offline

 
RE: MAJOR " Heads-Up!" Extensions Vulnerability - 9/27/2002 13:42:19   
The technote says to get XP and 2K fixes from windows update, but no updates are available for my XP Pro box at this time.

I was able to d/l the NT4 patch for fpse2000 a short time ago.


_____________________________

======
Doug G
======

(in reply to Rian)
rdouglass

 

Posts: 9280
From: Biddeford, ME USA
Status: offline

 
RE: MAJOR " Heads-Up!" Extensions Vulnerability - 9/27/2002 14:22:20   
quote:

Quick question: is this something we have to install in front page like software, or is it something we will have to upload to existing websites?


Nope Peppergal, this is all done at the server by the admin. I applied patch to 2 servers this afterrnon and all is well so far. (However I' m keeping my backups close at hand....:))

< Message edited by rdouglass -- 9/26/2002 2:23:44 PM >

(in reply to Rian)
Peppergal

 

Posts: 2207
Joined: 9/20/2002
Status: offline

 
RE: RE: MAJOR " Heads-Up!" Extensions Vulner... - 9/27/2002 16:19:35   
Oh, okay, so I don' t have to worry myself with this?

_____________________________

Northeast PA / Poconos/ Lake Wallenpaupack Real Estate
wallenpaupacklakeproperty.com
Karen's Real Estate Blog

(in reply to rdouglass)
Page:   [1]

All Forums >> Web Development >> Server Issues >> MAJOR " Heads-Up!" Extensions Vulnerability
Page: [1]
Jump to: 1





New Messages No New Messages
Hot Topic w/ New Messages Hot Topic w/o New Messages
Locked w/ New Messages Locked w/o New Messages
 Post New Thread
 Reply to Message
 Post New Poll
 Submit Vote
 Delete My Own Post
 Delete My Own Thread
 Rate Posts