Microsoft Windows HTTP.sys Remote Code Execution Vulnerability (CVE-2015-1635)
Data de publicação: 21 julho 2015
Schweregrad: : Crítico
Data do informe: 21 julho 2015
Descrição
A remote code execution vulnerability exists in the HTTP protocol stack (HTTP.sys) that is caused when HTTP.sys improperly parses specially crafted HTTP requests. An attacker who successfully exploited this vulnerability could execute arbitrary code in the context of the System account.
Exposição das informações
Apply associated Trend Micro DPI Rules.
Solução
Trend Micro Deep Security DPI Rule Number: 1006620