CVE-2010-2568:The vulnerability CVE-2010-2568 is a critical flaw in the Windows Shell of multiple Microsoft Windows versions, including XP SP3, Server 2003 SP2, Vista SP1 and SP2, Server 2008 SP2 and R2, and Windows 7. This vulnerability allows local users or remote attackers to execute arbitrary code via a crafted .LNK or .PIF shortcut file.

splash
Back

Description Preview

The CVE-2010-2568 vulnerability is a serious security flaw in the Windows Shell of several Microsoft Windows versions. This vulnerability can be exploited by local users or remote attackers to execute arbitrary code via a specially crafted .LNK or .PIF shortcut file. The flaw arises due to improper handling of these shortcut files during icon display in Windows Explorer. This vulnerability was demonstrated in the wild in July 2010 and was originally reported for malware that leverages CVE-2010-2772 in Siemens WinCC SCADA systems.

Overview

The CVE-2010-2568 vulnerability is a high-risk flaw that affects multiple versions of Microsoft Windows. The flaw lies in the Windows Shell, where .LNK or .PIF shortcut files are not properly handled during icon display in Windows Explorer. This allows local users or remote attackers to execute arbitrary code, potentially compromising the system. The vulnerability was first reported in July 2010 and has been used in the wild, notably by malware targeting Siemens WinCC SCADA systems.

Remediation

Microsoft has released a security update to address this vulnerability. Users are advised to apply the update as soon as possible to protect their systems from potential attacks. The update can be found in the Microsoft Security Bulletin MS10-046. For systems that cannot be updated immediately, it is recommended to disable the display of icons for shortcuts and disable the WebClient service as a workaround.

References

  1. US-CERT Technical Alert TA10-222A
  2. Microsoft Security Advisory 2286198
  3. Microsoft Security Bulletin MS10-046
  4. OVAL Definition
  5. Security Focus BID 41732
  6. Secunia Advisory 40647
  7. CERT Vulnerability Note VU#940193

Early Warning

Armis Early Warning customers received an advanced alert on this vulnerability.

Armis Alert Date
Jul 16, 2010
CISA KEV Date
Sep 15, 2022
4444days early
Learn More

Industry ExposureMost to least
This section illustrates the prevalence of a specific Common Vulnerabilities and Exposures (CVE) across various industries based on customer reports. The ranking displays industries from the most to least affected by this particular vulnerability, offering valuable insight into where this CVE has been most frequently observed. This information can help organizations within these sectors prioritize their security efforts, understand their relative risk exposure compared to their peers, and focus remediation strategies where they are most needed. By understanding the industry-specific impact, organizations can make more informed decisions regarding patching, resource allocation, and overall risk management related to this CVE.

  1. Health Care & Social Assistance
    Health Care & Social Assistance
  2. Manufacturing
    Manufacturing
  3. Arts, Entertainment & Recreation
    Arts, Entertainment & Recreation
  4. Retail Trade
    Retail Trade
  5. Accommodation & Food Services
    Accommodation & Food Services
  6. Administrative, Support, Waste Management & Remediation Services
    Administrative, Support, Waste Management & Remediation Services
  7. Agriculture, Forestry Fishing & Hunting
    Agriculture, Forestry Fishing & Hunting
  8. Construction
    Construction
  9. Educational Services
    Educational Services
  10. Finance and Insurance
    Finance and Insurance
  11. Information
    Information
  12. Management of Companies & Enterprises
    Management of Companies & Enterprises
  13. Mining
    Mining
  14. Other Services (except Public Administration)
    Other Services (except Public Administration)
  15. Professional, Scientific, & Technical Services
    Professional, Scientific, & Technical Services
  16. Public Administration
    Public Administration
  17. Real Estate Rental & Leasing
    Real Estate Rental & Leasing
  18. Transportation & Warehousing
    Transportation & Warehousing
  19. Utilities
    Utilities
  20. Wholesale Trade
    Wholesale Trade

Focus on What Matters

  1. See Everything.
  2. Identify True Risk.
  3. Proactively Mitigate Threats.

Let's talk!

background