11 Feb, 2008
Disabling DCOM Support in RPC Over HTTP in Windows Server 2003
Posted by: BSchwarz In: Securtiy
I know this is an older exploit, but, my servers are still getting scanned for the vulnerability. It’s always better safe than sorry when dealing with anything that opens your Windows server up to an attack and possible compromise.
The DCOM exploits present in Windows Server 2003, referenced in Microsoft Security Bulletin MS03-039 and CERT Advisory CA-2003-19, are also present in the RPC over HTTP interface. This interface is not installed by default, but can be added using the Add / Remove Programs control panel applet.
Recent Comments