Patch Management Software
Live Demo Free Edition Download Now
 
Windows 2000 Server Patch Details Windows 2000 Server Patches

Patch Name : StepByStepInteractiveTraining-KB923723-x86-ENU.exe
Patch Description : Security Update for Windows 2000 (KB923723)
Bulletin Id : MS07-005
Bulletin Title : Vulnerability in Step-by-Step Interactive Training Could Allow Remote Code Execution (923723)
KnowledgeBase : 923723
Severity : Important
Location Path : StepByStepInteractiveTraining-KB923723-x86-ENU.exe
Bulletin Summary: If a user is logged on with administrative user rights, an attacker who successfully exploited this vulnerability could take complete control of an affected system. An attacker could then install programs; view, change, or delete data; or create new accounts with full user rights. Users whose accounts are configured to have fewer user rights on the system could be less impacted than users who operate with administrative user rights.

A remote code execution vulnerability exists in Step-by-Step Interactive Training because of the way that Step-by-Step Interactive Training handles bookmark link files. An attacker could exploit the vulnerability by constructing a specially crafted bookmark link file that could potentially allow remote code execution. An attacker who successfully exploited this vulnerability could take complete control of an affected system. However, user interaction is required to exploit this vulnerability.
Superceding Bulletin Id : None
Patch Release Date : Feb 13, 2007
CVE Id : CVE-2006-3448
Affected Product Information  
Product Name Service Pack Name
Windows 2000 Advanced Server Windows 2000 Service Pack 4
Windows 2000 Professional Windows 2000 Service Pack 4
Windows 2000 Server Windows 2000 Service Pack 4
Windows Server 2003 for Small Business Server Windows Server 2003 Service Pack 2
Windows Server 2003, Datacenter Edition Windows Server 2003 Service Pack 2
Windows Server 2003, Enterprise Edition Windows Server 2003 Service Pack 2
Windows Server 2003, Standard Edition Windows Server 2003 Service Pack 2
Windows Server 2003, Web Edition Windows Server 2003 Service Pack 2
Windows XP Professional Windows XP Service Pack 2
Windows XP Professional Windows XP Service Pack 3
Step-by-Step Interactive Training Step-by-Step Interactive Training Gold
Registry changes  
Registry Path Key Name Key Value
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Updates\Step By Step Interactive Training\SP2\KB923723 -2

 
Disclaimer: This webpage is intended to provide you information about patch announcements for certain specific software products. The information is provided "As Is" without warranty of any kind. The links provided point to pages on the vendors' websites. You can get more information by clicking the links to visit the relevant pages on the vendors' websites. Desktop Central is NOT endorsed by the vendors of the software products.