Niakoi znae li dokolko vunerable e web servera v win2k i dali ima niakakv update sreshtu expiloti ili po specifichni nastroiki
Niakoi znae li dokolko vunerable e web servera v win2k i dali ima niakakv update sreshtu expiloti ili po specifichni nastroiki
Obshto wzeto bez firewall pred nego (a i s) e dosta dupchest. Ima exploiti. Wij naprimer www.sans.org ( izwadka za nai nashumeliq naposledyk exploit:
--1 May 2001 Internet Information Server (IIS) 5.0 Buffer Overflow
Vulnerability
Microsoft warned of a security hole in machines running Windows 2000
with IIS 5.0. By sending the servers carefully crafted strings,
attackers could cause a buffer overflow that would allow them system
administrator level control of the machines. System administrators
can protect their systems by turning off the Internet printing
component. Microsoft has released a patch for the vulnerability, and
is delaying the release of Service Pack 2 until the patch is
incorporated.
http://www.msnbc.com/news/567192.asp
http://news.cnet.com/news/0-1003-200...tml?tag=prntfr
http://www.cert.org/advisories/CA-2001-10.html
Microsoft security advisory and patch information:
http://www.microsoft.com/technet/sec...n/MS01-023.asp
--3 & 4 May 2001 Buffer Overflow Vulnerability Exploits Published
In addition to the proof-of-concept exploit created by the company that
discovered the buffer new overflow vulnerability in Microsoft's IIS 5.0,
and reported it to Microsoft, a malicious exploit for the vulnerability
has been making its way around the Internet.
http://www.msnbc.com/news/568503.asp?0nm=T23F
http://www.infoworld.com/articles/hn...attacktool.xml
http://www.usatoday.com/life/cyber/t...-03-microsoft-
security-flaw-published.htm
http://www.theregister.co.uk/content/4/18734.html
)
Imah i edin URL kadeto se opiswashe wsichko kakwoto trqbwa da se naprawi za da stane edin IIS siguren (dokolkoto towa e wyzmojno;-)...shte go potyrsq
Ok mersi shte gledam da go konfiguriram pravilno bez izlishni microsoftski bokluci
za sega shte bude neshto kato servera na free.techno-link.com shte pokazva directoriite na ftp servera mi taka che za sega niam opasni uslugi na nego no za vseki sluchai ako niakoi iska da se probva kato haker sega mu e vremeto dokato oshte ne sum go pusnal oficialno.
http://212.36.17.65
shte sum blagodaren na vseki koito pomogne za rannoto otkrivane na niakoi bug ili vuneraviliti v tozi server
Ako niakoi go hakne posle da ne zabravi da postne v foruma kude e problema!!