Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

CVE ID:CVE-2002-0367
Description:smss.exe debugging subsystem in Windows NT and Windows 2000 does not properly authenticate programs that connect to other programs, which allows local users to gain administrator or SYSTEM privileges by duplicating a handle to a privileged process, as demonstrated by DebPloit.
Test IDs: 1.3.6.1.4.1.25623.1.0.10964  
Cross References: Common Vulnerability Exposure (CVE) ID: CVE-2002-0367
BugTraq ID: 4287
http://www.securityfocus.com/bid/4287
Bugtraq: 20020314 Fwd: DebPloit (exploit) (Google Search)
http://www.securityfocus.com/archive/1/262074
Bugtraq: 20020326 Re: DebPloit (exploit) (Google Search)
http://www.securityfocus.com/archive/1/264441
Bugtraq: 20020327 Local Security Vulnerability in Windows NT and Windows 2000 (Google Search)
http://www.securityfocus.com/archive/1/264927
Microsoft Security Bulletin: MS02-024
https://docs.microsoft.com/en-us/security-updates/securitybulletins/2002/ms02-024
http://marc.info/?l=ntbugtraq&m=101614320402695&w=2
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A158
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A76
XForce ISS Database: win-debug-duplicate-handles(8462)
http://www.iss.net/security_center/static/8462.php




© 1998-2025 E-Soft Inc. All rights reserved.