PT-2003-1372 · Microsoft · Proxy Server 2.0+1
Published
2003-04-15
·
Updated
2018-10-12
·
CVE-2003-0110
CVSS v2.0
5.0
Medium
| Vector | AV:N/AC:L/Au:N/C:N/I:N/A:P |
Name of the Vulnerable Software and Affected Versions
Microsoft Proxy Server 2.0
Internet Security and Acceleration (ISA) Server 2000
Description
The issue allows remote attackers to cause a denial of service, resulting in CPU consumption or a packet storm, by sending a spoofed, malformed packet to UDP port 1745. This affects the Winsock Proxy service in Microsoft Proxy Server 2.0 and the Microsoft Firewall service in Internet Security and Acceleration (ISA) Server 2000.
Recommendations
For Microsoft Proxy Server 2.0, consider restricting access to UDP port 1745 to minimize the risk of exploitation.
For Internet Security and Acceleration (ISA) Server 2000, restrict access to the Microsoft Firewall service to reduce the risk of a denial of service attack.
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Internet Security/Acceleration (Isa) Server 2000
Proxy Server 2.0