SecurityTracker.com
    Home    |    View Topics    |    Search    |    Contact Us    |   

SecurityTracker
Archives


 


Category:   Application (Firewall)  >   Microsoft Internet Connection Firewall (ICF) Vendors:   Microsoft
Windows XP Service Pack 2 Firewall Configuration Error Exposes File and Print Sharing to Remote Users
SecurityTracker Alert ID:  1011374
SecurityTracker URL:  http://securitytracker.com/id/1011374
CVE Reference:   GENERIC-MAP-NOMATCH   (Links to External Site)
Date:  Sep 21 2004
Impact:   Disclosure of system information, Disclosure of user information, Host/resource access via network
Exploit Included:  Yes  

Description:   A vulnerability was reported in Windows XP Service Pack 2 (SP2). A remote user can access shared folders on the target system in certain configurations.

PC-WELT reported that when XP SP2 is installed on a certain configuration, a remote user can access the shared files and printers on the target system, even though the Windows XP firewall is enabled. Other services may also be accessible, the report said.

The target system is vulnerable if it is configured to provide file and print sharing for a local network, uses a dial-up or ISDN link to access the Internet, and has Internet Connection Sharing disabled. DSL users are also affected when using an integrated modem instead of a DSL router.

The report indicates the SP2 will automatically make an exception to the XP SP2 firewall to permit connections for file and printer sharing, even if previous configurations required a firewall on the dial-up adapter. When the dial-up adapter is subsequently invoked to access the Internet, the target user's files and printers will be shared with remote users.

The original report is available at:

http://www.pcwelt.de/know-how/extras/103039/ [English]
http://www.pcwelt.de/news/sicherheit/103013/ [German]

Impact:   A remote user may be able to gain access to file and print sharing services on the target system.
Solution:   No vendor solution was available at the time of this entry.

PC-WELT indicates that the firewall configuration can be manually modified to deny remote user access to the services.

Vendor URL:  www.microsoft.com/ (Links to External Site)
Cause:   Access control error, Configuration error
Underlying OS:  Windows (XP)
Underlying OS Comments:  XP SP2

Message History:   This archive entry has one or more follow-up message(s) listed below.
Dec 20 2004 (Vendor Issues Fix) Windows XP Service Pack 2 Firewall Configuration Error Exposes File and Print Sharing to Remote Users
The vendor has issued a fix.



 Source Message Contents



[Original Message Not Available for Viewing]


Go to the Top of This SecurityTracker Archive Page





Home   |    View Topics   |    Search   |    Contact Us

This web site uses cookies for web analytics. Learn More

Copyright 2019, SecurityGlobal.net LLC