Oval Definition:oval:org.mitre.oval:def:1529
Revision Date:2014-03-03Version:50
Title:Windows Vista Information Disclosure Vulnerability
Description:Microsoft Windows Vista uses insecure default permissions for unspecified "local user information data stores" in the registry and the file system, which allows local users to obtain sensitive information such as administrative passwords, aka "Permissive User Information Store ACLs Information Disclosure Vulnerability."
Family:windowsClass:vulnerability
Status:ACCEPTEDReference(s):CVE-2007-2229
Platform(s):Microsoft Windows Vista
Product(s):
Definition Synopsis
  • Microsoft Windows Vista is installed
  • AND NOT Win2K/XP/2003 is patched
  • AND
  • the version of wmi.dll is greater than 6.0.6000.16000
  • AND the version of wmi.dll is less than 6.0.6000.16470
  • the version of imagehlp.dll is greater than 6.0.6000.16000
  • AND the version of imagehlp.dll is less than 6.0.6000.16470
  • the version of wmi.dll is greater than 6.0.6000.20000
  • AND the version of wmi.dll is less than 6.0.6000.20580
  • the version of imagehlp.dll is greater than 6.0.6000.20000
  • AND the version of imagehlp.dll is less than 6.0.6000.20580
  • BACK