One of the important news about the security on October 2008 is Microsoft release the patch MS08-067. This is because Microsoft found a serious security problem that could make an attacker gain an access through the remote execution of code, and used a hand to install the trojan house to the victim machine without user interaction.
This vulnerability will exploits a parsing flaw in the path canonicalization code of NetAPI32.dll through the server service and this vuln is capable of bypassing NX on some OS and Service Packs. This vuln can be easy exploit through metasploit module. On metasploit module we need to be point to correct target must be used to prevent the server service ( along with a dozen others in the same process) from crashing. Windows XP targets seem to handle multiple successful exploitation events, but windows 2003 targets will often crash or hang on subsequent attempts.