MS07-038: Vulnerability in Windows Vista Firewall Could Allow Information Disclosure (935807)

This script is Copyright (C) 2007-2013 Tenable Network Security, Inc.


Synopsis :

The remote Windows Vista system contains a firewall that is affected by
an information disclosure vulnerability.

Description :

The remote version of Windows Vista contains a firewall that suffers
from an information disclosure vulnerability.

By sending specially crafted packets, an attacker may be able to access
some ports of the remote host by going through its Teredo interface.

See also :

http://technet.microsoft.com/en-us/security/bulletin/MS07-038

Solution :

Microsoft has released a set of patches for Windows Vista.

Risk factor :

High / CVSS Base Score : 7.8
(CVSS2#AV:N/AC:L/Au:N/C:C/I:N/A:N)
CVSS Temporal Score : 6.4
(CVSS2#E:F/RL:OF/RC:C)
Public Exploit Available : true

Family: Windows : Microsoft Bulletins

Nessus Plugin ID: 25689 ()

Bugtraq ID: 24779

CVE ID: CVE-2007-3038