About this tag
The web enrollment tag on WindowsForum.com covers discussions about Microsoft security update MS11-051, which addressed a cross-site scripting (XSS) vulnerability in Active Directory Certificate Services Web Enrollment. This vulnerability could allow elevation of privilege, enabling an attacker to execute arbitrary commands in the context of the target user if the user clicked a specially crafted link. The security update was rated Important and applied to Active Directory Certificate Services Web Enrollment. Forum threads provide details on the vulnerability, its impact, and the mitigation provided by the update.
-
MS11-051 - Important : Vulnerability in Active Directory Certificate Services Web Enrollment Could A
Severity Rating: Important Revision Note: V1.1 (June 15, 2011): Clarified the XSS Filter mitigation. Summary: This security update resolves a privately reported vulnerability in Active Directory Certificate Services Web Enrollment. The vulnerability is a cross-site...- News
- Thread
- active directory attacker certificate services extended security updates malware privilege escalation security vulnerability web enrollment xss
- Replies: 0
- Forum: Security Alerts
-
MS11-051 - Important: Vulnerability in Active Directory Certificate Services Web Enrollment Could Al
Severity Rating: Important - Revision Note: V1.0 (June 14, 2011): Bulletin published.Summary: This security update resolves a privately reported vulnerability in Active Directory Certificate Services Web Enrollment. The vulnerability is a cross-site scripting (XSS) vulnerability that could allow...- News
- Thread
- 2011 active directory attack bulletin command context elevation email exploit links microsoft patch privilege report security update users vulnerability web enrollment xss
- Replies: 0
- Forum: Security Alerts
-
MS11-051 - Important: Vulnerability in Active Directory Certificate Services Web Enrollment Could Al
Bulletin Severity Rating:Important - This security update resolves a privately reported vulnerability in Active Directory Certificate Services Web Enrollment. The vulnerability is a cross-site scripting (XSS) vulnerability that could allow elevation of privilege, enabling an attacker to execute...- News
- Thread
- active directory certificate services cross-site scripting microsoft privilege escalation security update vulnerability web enrollment xss
- Replies: 0
- Forum: Security Alerts