Microsoft FAST Search Server 2010 for SharePoint Multiple Vulnerabilities
Last Update Date:
10 Oct 2012 15:40
Release Date:
10 Oct 2012
5296
Views
RISK: Medium Risk
TYPE: Servers - Other Servers
Remote code execution vulnerabilities exist in FAST Search Server 2010 for SharePoint using the Advanced Filter Pack, an attacker could run arbitrary code in the context of a user account with a restricted token. By default, Advanced Filter Pack in FAST is disabled.
Impact
- Remote Code Execution
System / Technologies affected
- Microsoft FAST Search Server 2010 for SharePoin
Solutions
Before installation of the software, please visit the software manufacturer web-site for more details.
- Download location for patches:
http://technet.microsoft.com/en-us/security/bulletin/ms12-067
Vulnerability Identifier
- CVE-2012-1766
- CVE-2012-1767
- CVE-2012-1768
- CVE-2012-1769
- CVE-2012-1770
- CVE-2012-1771
- CVE-2012-1772
- CVE-2012-1773
- CVE-2012-3106
- CVE-2012-3107
- CVE-2012-3108
- CVE-2012-3109
- CVE-2012-3110
Source
Related Link
Share with