CVE-2008-0074: High severity microsoft internet information services vulnerability
Published Feb 12, 2008
·Updated
Unspecified vulnerability in Microsoft Internet Information Services (IIS) 5.0 through 7.0 allows local users to gain privileges via unknown vectors related to file change notifications in the TPRoot, NNTPFile\Root, or WWWRoot folders.
Affected Software
3 affected components
Microsoft Internet Information Server=6.0
Microsoft Internet Information Services=5.0
Microsoft Internet Information Server=6.0-beta
Event History
Feb 12, 2008
CVE Published
via MITRE·08:00 PM
Data Sourced
via MITRE·08:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2008-0074?
CVE-2008-0074 is considered a high severity vulnerability.
2
How do I fix CVE-2008-0074?
To fix CVE-2008-0074, apply the latest security patches provided by Microsoft for Internet Information Services.
3
What software versions are affected by CVE-2008-0074?
CVE-2008-0074 affects Microsoft Internet Information Services versions 5.0, 6.0, and 6.0-beta.
4
Can CVE-2008-0074 allow unauthorized access?
Yes, CVE-2008-0074 can allow local users to gain elevated privileges on the affected systems.
5
What are the potential impacts of CVE-2008-0074?
The potential impacts of CVE-2008-0074 include unauthorized access and control over sensitive files and directories.