MS08-049: Vulnerabilities in Event System Could Allow Remote Code Execution (950974)
High Nessus Plugin ID 33878
SynopsisArbitrary code can be executed on the remote host through the Microsoft Event System.
DescriptionThe remote version of Windows contains a vulnerability in the Event System that might allow an attacker to execute arbitrary code on the remote host.
To exploit this vulnerability, an attacker with valid login credentials would need to send a malformed subscription request to the remote Event System.
SolutionMicrosoft has released a set of patches for Windows 2000, XP, 2003, Vista and 2008.