Lumension® Endpoint Intelligence Center

Intelligence Center » Browse All Vulnerabilities » CVE-2002-0479

Overview

Vulnerability Score 7.2 7.2
CVE Id CVE-2002-0479
Last Modified 05 Sep 2008 04:28:07
Published 12 Aug 2002 12:00:00
Confidentiality Impact COMPLETE COMPLETE
Integrity Impact COMPLETE COMPLETE
Availability Impact COMPLETE COMPLETE
Access Vector LOCAL
Access Complexity LOW
Authentication NONE

CVE-2002-0479

Summary

Gravity Storm Service Pack Manager 2000 creates a hidden share (SPM2000c$) mapped to the C drive, which may allow local users to bypass access restrictions on certain directories in the C drive, such as system32, by accessing them through the hidden share.

Vulnerable Systems

Application

  • Gravity Storm Software Service Pack Manager 2000 6.0

  • Gravity Storm Software Service Pack Manager 2000 6.1

  • Gravity Storm Software Service Pack Manager 2000 6.3


References

XF - sp-manager-insecure-directories(8607)

BID - 4347

BUGTRAQ - 20020320 Gravity Storm Service Pack Manager 2000 Share Vulnerability


Last Updated: 27 May 2016 10:36:56