Digital Edition

SYS-CON.TV
Microsoft: ISA Vulnerability Could Allow Internet Content Spoofing
Microsoft: ISA Vulnerability Could Allow Internet Content Spoofing

Thanking two Dutch developers, Martijn de Vries and Thomas de Clerk of Info Support for discovering and reporting it, Microsoft yesterday sent out a Security Alert about what it called a "Spoofing Vulnerability" in Microsoft Internet Security and Acceleration Server 2000 (ISA Server) and Microsoft Proxy Server 2.0 that could enable an attacker to spoof trusted Internet content.

ISA Server is an enterprise-level firewall and Web cache server. Proxy Server 2.0 acts as an Internet gateway for computers on a network. Users of the software listed below need to download and install an update:

  • Internet Security and Acceleration Server 2000 Service Pack 1 (SP1)
  • Internet Security and Acceleration Server 2000 SP2
  • Microsoft Small Business Server 2000 (includes Internet Security and Acceleration Server 2000)
  • Microsoft Small Business Server 2003 Premium Edition (includes Internet Security and Acceleration Server 2000)
  • Microsoft Proxy Server 2.0 SP1

  • The full Microsoft Security Bulletin is here: http://www.microsoft.com/security/bulletins/200411_isa.mspx

    About Security News Desk
    SYS-CON's Security News desk trawls the world of security for news of software, hardware, products, and services that seems likely to be of interest to infosec professionals and summarizes them for easy assimilation by busy IT managers and staff.

    In order to post a comment you need to be registered and logged in.

    Register | Sign-in

    Reader Feedback: Page 1 of 1

    Pity the poor SMBs whose businesses have been affected by spoofing and phishing scams recently. How much is MS to blame? Or is it just a generic problem right now?




    ADS BY GOOGLE
    Subscribe to the World's Most Powerful Newsletters

    ADS BY GOOGLE

    On-premise or off, you have powerful tools available to maximize the value of your infrastructure an...
    Atmosera delivers modern cloud services that maximize the advantages of cloud-based infrastructures....
    Now is the time for a truly global DX event, to bring together the leading minds from the technology...
    Artifex Software began 25-years ago with Ghostscript, a page description language (PDL) interpreter ...
    In an age of borderless networks, security for the cloud and security for the corporate network can ...
    In today's always-on world, customer expectations have changed. Competitive differentiation is deliv...
    As the digitization of business accelerates the move of critical applications and content to the clo...
    Blockchain has shifted from hype to reality across many industries including Financial Services, Sup...
    Cloud Storage 2.0 has brought many innovations, including the availability of cloud storage services...
    Concerns about security, downtime and latency, budgets, and general unfamiliarity with cloud technol...
    In very short order, the term "Blockchain" has lost an incredible amount of meaning. With too many j...
    In a recent survey, Sumo Logic surveyed 1,500 customers who employ cloud services such as Amazon Web...
    For enterprises to maintain business competitiveness in the digital economy, IT modernization is req...
    Cloud-Native thinking and Serverless Computing are now the norm in financial services, manufacturing...
    Public clouds dominate IT conversations but the next phase of cloud evolutions are "multi" hybrid cl...
    Data center, on-premise, public-cloud, private-cloud, multi-cloud, hybrid-cloud, IoT, AI, edge, SaaS...
    Moving to Azure is the path to digital transformation, but not every journey is effective. Organizat...
    Most modern computer languages embed a lot of metadata in their application. We show how this goldmi...
    At CloudEXPO Silicon Valley, June 24-26, 2019, Digital Transformation (DX) is a major focus with exp...
    Every organization is facing their own Digital Transformation as they attempt to stay ahead of the c...