This script is Copyright (C) 2009-2013 Tenable Network Security, Inc.
Arbitrary code can be executed on the remote host through the WINS
The remote host has a Windows WINS server installed.
The remote version of this server contains two vulnerabilities that may
allow an attacker to execute arbitrary code on the remote system :
- A heap overflow vulnerability can be exploited by any
- A integer overflow vulnerability can be exploited by a
WINS replication partner.
An attacker may use these flaws to execute arbitrary code on the remote
system with SYSTEM privileges.
See also :
Microsoft has released a set of patches for Windows 2000 and 2003.
Risk factor :
Critical / CVSS Base Score : 10.0
CVSS Temporal Score : 8.3
Public Exploit Available : true