Home / bulletins

MS09-031 - Important: Vulnerability in Microsoft ISA Server 2006 Could Cause Elevation of Privilege (970953) - Version:1.0

Posted on 01 August 2009

Important

Severity Rating: Important - Revision Note: V1.0 (July 14, 2009): Bulletin published.Summary: This security update resolves a privately reported vulnerability in Microsoft Internet Security and Acceleration (ISA) Server 2006. The vulnerability could allow elevation of privilege if an attacker successfully impersonates an administrative user account for an ISA server that is configured for Radius One Time Password (OTP) authentication and authentication delegation with Kerberos Constrained Delegation.

Link

Other versions

 

TOP