First published: Tue Feb 12 2008(Updated: )
Unspecified vulnerability in Microsoft Internet Information Services (IIS) 5.0 through 7.0 allows local users to gain privileges via unknown vectors related to file change notifications in the TPRoot, NNTPFile\Root, or WWWRoot folders.
Credit: secure@microsoft.com
Affected Software | Affected Version | How to fix |
---|---|---|
Microsoft Internet Information Services | =6.0 | |
Microsoft Internet Information Services (IIS) | =5.0 | |
Microsoft Internet Information Services | =6.0-beta |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2008-0074 is considered a high severity vulnerability.
To fix CVE-2008-0074, apply the latest security patches provided by Microsoft for Internet Information Services.
CVE-2008-0074 affects Microsoft Internet Information Services versions 5.0, 6.0, and 6.0-beta.
Yes, CVE-2008-0074 can allow local users to gain elevated privileges on the affected systems.
The potential impacts of CVE-2008-0074 include unauthorized access and control over sensitive files and directories.