RULE(RULE ID:310280)

Rule General Information
Release Date: 2015-09-07
Rule Name: EXPLOIT Microsoft Windows Internet Connection Signup Wizard Insecure Library Loading Vulnerability -1 (CVE-2010-3144)
Severity:
CVE ID:
Rule Protection Details
Description: Untrusted search path vulnerability in the Internet Connection Signup Wizard in Microsoft Windows XP SP2 and SP3 and Server 2003 SP2 allows local users to gain privileges via a Trojan horse smmscrpt.dll file in the current working directory, as demonstrated by a directory that contains an ISP or INS file, aka "Internet Connection Signup Wizard Insecure Library Loading Vulnerability."
Impact: An attacker can execute arbitrary code, conduct a denial of service, or gain unauthorized access to the vulnerable target system.
Affected OS: Windows
Reference: ExploitDB:14754
http://www.microsoft.com/technet/security/Bulletin/MS10-097.mspx
SecurityTrackerID:1024879
Solutions
Microsoft has released a patch MS10-097 to eliminate the vulnerability. The patch can be downloaded at http://www.microsoft.com/technet/security/Bulletin/MS10-097.mspx