漏洞信息详情
Microsoft Windows NT RAS 管理注册码漏洞
- CNNVD编号:CNNVD-200102-101
- 危害等级: 超危
- CVE编号:
CVE-2001-0045
- 漏洞类型:
访问验证错误
- 发布时间:
2001-02-16
- 威胁类型:
远程
- 更新时间:
2005-10-20
- 厂 商:
microsoft - 漏洞来源:
Discovered by Mila… -
漏洞简介
Windows NT 4.0版本的RAS管理码的默认许可存在漏洞。本地用户通过改变指向恶意DLL的值执行任意命令,也称为“注册许可”漏洞之一。
漏洞公告
Microsoft has released the following tool which corrects the registry key value (this tool also corrects the registry values for other vulnerabilities discussed in Microsoft Security Bulletin MS00-095). Please see Frequently Asked Questions (Microsoft Security Bulletin MS00-095) under “Credit” for details in regards to proper usage of the tool:
参考网址
来源: BID
名称: 2064
链接:http://www.securityfocus.com/bid/2064
来源: MS
名称: MS00-095
链接:http://www.microsoft.com/technet/security/bulletin/MS00-095.asp
来源: XF
名称: nt-ras-reg-perms
链接:http://xforce.iss.net/static/5671.php
来源: US Government Resource: oval:org.mitre.oval:def:500
名称: oval:org.mitre.oval:def:500
链接:http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:500