The Internet Archive is currently experiencing extended downtime due to a denial of service attack and security incident. We’ve temporarily switched Wayback Machine links to a mirror generously hosted by Ali, a member of the Windows Update Restored community. You can verify authenticity of files you download by looking for a digital signature from Microsoft Corporation in the file’s Properties dialog, or by confirming that SHA1 hashes match those we list below. You can check file hashes using 7-Zip or HashCheck. Some links may lead to a 404 page at this time. |
Microsoft Download Center Archive
Security Update for Unified Access Gateway 2010 RTM (KB2433585) |
Vulnerabilities in Forefront Unified Access Gateway could Cause Cross Site Scripting Resulting in Elevation of Privilege
- This security update resolves four privately reported vulnerabilities in Forefront Unified Access Gateway 2010 (UAG). The most severe of these vulnerabilities could allow elevation of privilege if a user visits an affected Web site using a specially crafted URL. An attacker could host a Web site that contains a Web page that is used to exploit this vulnerability. In addition, compromised Web sites and Web sites that accept or host user-provided content or advertisements could contain specially crafted content that could exploit this vulnerability.
Here are the cases with the severity rating:
UAG Redirection Issue May Allow Phishing Vulnerability - CVE-2010-2732 (Important - Spoofing)
UAG XSS Allows EOP Vulnerability - CVE-2010-2733 (Important - Elevation of Privilege)
XSS Issue on UAG Mobile Portal Website in Forefront Unified Access Gateway Vulnerability - CVE-2010-2734 (Important - Elevation of Privilege)
XSS in Sginurl.asp Vulnerability - CVE-2010-3936 (Important - Elevation of Privilege)
Knowledge Base Articles: | |
---|---|
Security Bulletins: |
Files
Status: DeletedThis download is no longer available on microsoft.com. The downloads below are archives provided by a community mirror. |
File | Size |
---|---|
UAG-KB2433585-v4.0.1101.052-ENU.msp SHA1: f1fc1aa6b7e2248f3db0be55c0f2c927bab527e9 | 4.76 MB |
System Requirements
Operating Systems: Windows Server 2008 R2
- Forefront UAG can be installed on computers running the Windows Server 2008 R2 Standard or Windows Server 2008 R2 Enterprise 64-bit operating systems.
Installation Instructions
- 1. For the file you want to download, click the Download button on this page.
2. Click Save to download to your computer.