First published: Tue Jun 14 2005(Updated: )
Microsoft Agent allows remote attackers to spoof trusted Internet content and execute arbitrary code by disguising security prompts on a malicious Web page.
Credit: secure@microsoft.com
Affected Software | Affected Version | How to fix |
---|---|---|
Microsoft Windows 2003 Server | =64-bit | |
Microsoft Windows Terminal Services using RDP | =sp1 | |
Microsoft Windows 2003 Server | =web-sp1_beta_1 | |
Microsoft Windows XP | =sp1 | |
Microsoft Windows 2003 Server | =web | |
Microsoft Windows 2003 Server | =enterprise | |
Microsoft Windows XP | ||
Microsoft Windows 2003 Server | =enterprise_64-bit | |
Microsoft Windows 2003 Server | =enterprise-sp1_beta_1 | |
Microsoft Windows XP | =gold | |
Microsoft Windows 2000 | ||
Microsoft Windows Me | ||
Microsoft Windows XP | ||
Microsoft Windows 2003 Server | =standard_64-bit | |
Microsoft Windows 2003 Server | =datacenter_64-bit-sp1 | |
Microsoft Windows 2000 | =sp4 | |
Microsoft Windows XP | =sp2 | |
Microsoft Windows 2003 Server | =datacenter_64-bit-sp1_beta_1 | |
Microsoft Windows XP | =sp1 | |
Microsoft Windows XP | ||
Microsoft Windows XP | =sp1 | |
Microsoft Windows 98SE | ||
Microsoft Windows 2000 | =sp2 | |
Microsoft Windows 2003 Server | =standard-sp1_beta_1 | |
Microsoft Windows XP | =sp1 | |
Microsoft Windows 2003 Server | =r2-sp1 | |
Microsoft Windows 2003 Server | =enterprise_64-bit-sp1 | |
Microsoft Windows Terminal Services using RDP | =sp3 | |
Microsoft Windows 2003 Server | =r2 | |
Microsoft Windows 2003 Server | =r2-sp1_beta_1 | |
Microsoft Windows 2003 Server | =web-sp1 | |
Microsoft Windows 2003 Server | =r2 | |
Microsoft Windows 2000 | =sp1 | |
Microsoft Windows XP | =sp2 | |
Microsoft Windows XP | ||
Microsoft Windows 2003 Server | =standard-sp1 | |
Microsoft Windows Me | ||
Microsoft Windows 2003 Server | =enterprise-sp1 | |
Microsoft Windows 2000 | =sp4 | |
Microsoft Windows XP | =sp1 | |
Microsoft Windows 2003 Server | =standard | |
Microsoft Windows XP | =sp2 | |
Microsoft Windows Terminal Services using RDP | ||
Microsoft Windows 2003 Server | =enterprise_64-bit-sp1_beta_1 | |
Microsoft Windows 98 | =gold | |
Microsoft Windows Terminal Services using RDP | =sp2 | |
Microsoft Windows 2003 Server | =r2 | |
Microsoft Windows XP | =gold | |
Microsoft Windows 2000 | =sp3 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2005-1214 is considered a critical vulnerability because it allows remote attackers to run arbitrary code.
To fix CVE-2005-1214, apply the latest security updates provided by Microsoft for the affected software.
CVE-2005-1214 affects various versions of Microsoft Windows, including Windows 2000, Windows XP, and Windows Server 2003.
CVE-2005-1214 facilitates local or remote code execution by spoofing security prompts on malicious web pages.
As a temporary workaround for CVE-2005-1214, consider disabling the Microsoft Agent service or restricting internet access.