Thomas Shinder Blog RSS

All Blogs  »  Thomas Shinder Blog  »  ISA Central  »  Blog article: Block the VML Vulnerability with ISA Firewall's HTTP Security Filter

Block the VML Vulnerability with ISA Firewall’s HTTP Security Filter

The first course of action taken against this attack must be protecting and patching all affected computers. Details of this issue can be found here.

The following information explains how to use Microsoft Internet Security and Acceleration (ISA) Server 2004 or 2006 to help block malicious traffic intended to exploit this attack and to protect computers on internal networks.

The first section of this article contains technical details about this attack:

Affected Traffic

This article also discusses how ISA Server can mitigate a this attack attack:

Caveats

Helping to prevent this attack attacks through ISA Server

Protecting the ISA Server computer from this attack attacks

This article also discusses:

How to Make Sure ISA Server 2004 or ISA Server 2006 Is Correctly Configured

For detailed instructions, check out:

http://www.microsoft.com/technet/isa/2006/how-to-b...#8230;

HTH,

Tom

Site: www.isaserver.org
Blog: http://blogs.isaserver.org/shinder/
Book: http://tinyurl.com/3xqb7

Email: tshinder@isaserver.org

MVP — Microsoft Firewalls (ISA)

Leave a Reply

This is a captcha-picture. It is used to prevent mass-access by robots. (see: www.captcha.net)

You must read and type the 5 chars within 0..9 and A..F, and submit the form.

  

If CAPTCHA image is missing or you cannot read the characters above, please generate a




Receive all the latest articles by email!

Receive Real-Time & Monthly ISAserver.org article updates in your mailbox. Enter your email below!
Click for Real-Time sample & Monthly sample

Become an ISAserver.org member!

Discuss your ISA Server issues with thousands of other ISA Server experts. Click here to join!

Solution Center