First published: Tue Feb 10 2004(Updated: )
Microsoft Baseline Security Analyzer (MBSA) 1.2 does not correctly identify systems that have been patched but remain vulnerable to exploit until the system is rebooted, possibly giving the administrator a false sense of security.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Microsoft Baseline Security Analyzer | =1.2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2004-2091 has a medium severity rating due to the potential for false security assessments in patched systems.
CVE-2004-2091 affects MBSA 1.2 by failing to detect systems that require a reboot to apply security patches, leading to inaccurate vulnerability reporting.
System administrators may be misled into believing their systems are secure when in fact they remain vulnerable until a reboot is performed.
To mitigate CVE-2004-2091, ensure to reboot systems after applying patches to verify their security status accurately.
If you suspect CVE-2004-2091 impacts your systems, check for recent patches and ensure you reboot to apply them effectively.