Remote Code Execution in JView Profiler

The JView Profiler contains a flaw that might allow a remote intruder to take control of an affected system.

ITPro Today

July 12, 2005

1 Min Read
ITPro Today logo

ReportedJune 29, 2005 by SEC Consult

VERSIONS AFFECTED

Windows 98Windows 2000Windows XPWindows Server 2003

DESCRIPTION

The JView Profilercontains a flaw that might allow a remote intruder to take completecontrol of an affected system.

VENDOR RESPONSE

Microsoft released asecurity bulletin, "Vulnerabilityin JView Profiler Could Allow Remote Code Execution (903235)," andassociatedpatch to correct the problem. The patch sets a "kill bit" to prevent theobject from being loaded via Internet Explorer.



Sign up for the ITPro Today newsletter
Stay on top of the IT universe with commentary, news analysis, how-to's, and tips delivered to your inbox daily.

You May Also Like