Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
The control for listing accessibility options in the Accessibility Utility Manager on Windows 2000 (ListView) does not properly handle Windows messages, which allows local users to execute arbitrary code via a "Shatter" style message to the Utility Manager that references a user-controlled callback function.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Microsoft Utility Manager窗口消息处理本地权限提升漏洞
Vulnerability Description
Microsoft Windows 2000包含对操作系统中可达性(Accessibility)选项的支持,可达性支持是一系列Window中技术允许用户可以访问原来不可以访问的操作系统部分功能。可达性支持可通过内置在操作系统中的快捷方式或者使用Windows工具管理器来使能或关闭,工具管理器允许用户检查程序(Windows Narrator - 支持文本转换成语音或Screen Keyboard - 使用点设备模拟键盘)状态并启动或关闭它们。 工具管理器在处理窗口消息时存在缺陷,本地攻击者可以利用这个漏洞
CVSS Information
N/A
Vulnerability Type
N/A