A remote code execution vulnerability exists in Windows Web Client service that allow an attacker to take complete control of the affected system
Web Client service is used to create, access, and modify Internet-based files by using the WebDAV protocol. This vulnerability exists due to an unchecked buffer in the Web Client service. To exploit this vulnerability attacker must have valid logon credentials. An attacker first has to authenticate to the system and then entice the target user to connect to the malicious WebDAV service by sending specially crafted messages.
The information provided herein is on "as is" basis, without warranty of any kind.