Vulnerability Name: | CVE-2001-0047 (CCN-5673) | ||||||||
Assigned: | 2000-12-06 | ||||||||
Published: | 2000-12-06 | ||||||||
Updated: | 2018-10-12 | ||||||||
Summary: | The default permissions for the MTS Package Administration registry key in Windows NT 4.0 allows local users to install or modify arbitrary Microsoft Transaction Server (MTS) packages and gain privileges, aka one of the "Registry Permissions" vulnerabilities. | ||||||||
CVSS v3 Severity: | 5.9 Medium (CCN CVSS v3.1 Vector: CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L)
| ||||||||
CVSS v2 Severity: | 7.5 High (CVSS v2 Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P)
| ||||||||
Vulnerability Type: | CWE-Other | ||||||||
Vulnerability Consequences: | Gain Privileges | ||||||||
References: | Source: MITRE Type: CNA CVE-2001-0047 Source: CCN Type: CIAC Information Bulletin L-026 Microsoft Windows NT 'Registry Permissions' Vulnerability Source: CCN Type: Microsoft Security Bulletin MS00-095 Tool Available for 'Registry Permissions' Vulnerability Source: CCN Type: Microsoft Security Bulletin MS01-041 Malformed RPC Request Can Cause Service Failure Source: CCN Type: Microsoft Security Bulletin MS02-001 Trusting Domains Do Not Verify Domain Membership of SIDs in Authorization Data Source: CCN Type: Microsoft Security Bulletin MS02-018 Cumulative Patch for Internet Information Services (Q319733) Source: CCN Type: OSVDB ID: 13480 Microsoft Windows NT MTS Package Administration Registry Key Permission Weakness Source: BID Type: UNKNOWN 2065 Source: CCN Type: BID-2065 Microsoft Windows NT 4.0 MTS Package Administration Registry Key Vulnerability Source: MS Type: UNKNOWN MS00-095 Source: XF Type: UNKNOWN nt-mts-reg-perms(5673) Source: XF Type: UNKNOWN nt-mts-reg-perms(5673) Source: OVAL Type: UNKNOWN oval:org.mitre.oval:def:140 | ||||||||
Vulnerable Configuration: | Configuration 1: Configuration CCN 1: Denotes that component is vulnerable | ||||||||
Oval Definitions | |||||||||
| |||||||||
BACK |