|
-
March 17th, 2002, 11:35 AM
#1
Vulnerability: Windows 2000 / NT 4.0 Process Handle Local Privilage Elevation
Microsoft Windows 2000 / NT 4.0 Process Handle Local Privilege Elevation Vulnerability
A vulnerability has been reported in Microsoft Windows 2000 and NT 4 which could allow a user to gain SYSTEM level privileges on the local host.
The debugging subsystem, which is available to all users, may be used to create duplicate handles to a privileged process. This may be used to allow an application with the privileges of the currently logged in user to execute arbitrary code with the privileges of the process that is accessed.
Remote: Yes
Exploit: hhtp://online.securityfocus.com/data/vulnerabilities/esploits/DebPloit.zip
Source: http://www.xatrix.org/modules.php?op...thread&order=1
Posting Permissions
- You may not post new threads
- You may not post replies
- You may not post attachments
- You may not edit your posts
-
Forum Rules
|
|