Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
smss.exe debugging subsystem in Windows NT and Windows 2000 does not properly authenticate programs that connect to other programs, which allows local users to gain administrator or SYSTEM privileges by duplicating a handle to a privileged process, as demonstrated by DebPloit.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
微软Windows 2000/NT 4.0调试子系统本地权限提升漏洞(MS02-024)
Vulnerability Description
微软Windows 2000和Windows NT 4存在一个漏洞,允许任意一个本地用户获取SYSTEM权限。 通过如下办法请求调试子系统(smss.exe)获取任意进程句柄、线程句柄的副本: 1) 调用DbgUiConnectToDbg()成为调试子系统客户端 2) 调用ZwConnectPort()连接DbgSsApiPort LPC port,任意用户都可以访问该端口 3) 调用ZwRequestPort()请求调试子系统处理CreateProcess SsApi,形参为欲复制的PID或TID 4)
CVSS Information
N/A
Vulnerability Type
N/A