Lumension® Endpoint Intelligence Center

Intelligence Center » Browse All Vulnerabilities » CVE-2000-0197

Overview

Vulnerability Score 4.6 4.6
CVE Id CVE-2000-0197
Last Modified 10 Sep 2008 03:03:16
Published 14 Feb 2000 12:00:00
Confidentiality Impact PARTIAL PARTIAL
Integrity Impact PARTIAL PARTIAL
Availability Impact PARTIAL PARTIAL
Access Vector LOCAL
Access Complexity LOW
Authentication NONE

CVE-2000-0197

Summary

The Windows NT scheduler uses the drive mapping of the interactive user who is currently logged onto the system, which allows the local user to gain privileges by providing a Trojan horse batch file in place of the original batch file.

Vulnerable Systems

Operating System

  • Microsoft Windows Nt 4.0


References

BID - 1050

NTBUGTRAQ - 20000313 AT Jobs - Denial of serice/Privilege Elevation


Last Updated: 27 May 2016 10:35:36