MS07-019 Bulletin Details
Bulletin ID MS07-019
Title Vulnerability in Universal Plug and Play Could Allow Remote Code Execution (931261)
Summary A remote code execution vulnerability exists in the Universal Plug and Play (UPnP) service in the way that it handles specially crafted HTTP requests. These HTTP requests could only be sent directly to a target computer by an attacker on the same subnet. The Windows XP firewall and the protocol enforce this subnet restriction. An attacker who successfully exploited this vulnerability could run arbitrary code in the context of the Local Service account.
Knowledgebase 931261

List of Patches

S.No Patch Name Severity
1WindowsXP-KB931261-x64-ENU.exeCritical

Disclaimer: This webpage is intended to provide you information about patch announcement for certain specific software products. The information is provided "As Is" without warranty of any kind. The links provided point to pages on the vendors websites. You can get more information by clicking the links to visit the relevant pages on the vendors website.