I missed that in the MS bulletins.  Sorry about that.

Thanks!  (as usual  :-D  )

Chad


-----Original Message-----
From: Renaud Deraison [mailto:[EMAIL PROTECTED] 
Sent: Wednesday, August 17, 2005 4:23 PM
To: Chad I.Uretsky
Cc: '[email protected]'
Subject: Re: Plugin 19408 - MS05-039 - and Windows Server 2003



On Aug 17, 2005, at 19:49, Chad I. Uretsky wrote:

> I just ran a scan against a Win2K3 box I have, checking for the
> MS05-039 vulnerability.  I have not yet patched the box, and so I  
> expected it to show up as vulnerable.
It won't show up as vulnerable, as the pipe which is needed to access  
the PNP service is not available over a NULL session (while it is on  
Win2K). The good news is that a worm can not do a blind attack  
either, as credentials are needed on this platform.

                                     -- Renaud
_______________________________________________
Nessus mailing list
[email protected]
http://mail.nessus.org/mailman/listinfo/nessus

Reply via email to