Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Untrusted search path vulnerability in Winlogon in Microsoft Windows 2000 SP4, when SafeDllSearchMode is disabled, allows local users to gain privileges via a malicious DLL in the UserProfile directory, aka "User Profile Elevation of Privilege Vulnerability."
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Microsoft Windows用户配置文件权限提升漏洞(MS06-051)
Vulnerability Description
Microsoft Windows是美国微软(Microsoft)公司发布的一系列操作系统。 Windows的Winlogon在处理用户配置文件时存在漏洞,本地攻击者可能利用此漏洞提升自己在系统中的权限。 在Windows 2000上,Winlogon允许使用无效的路径。如果禁用了SafeDllSearchMode的话,并将特制的DLL置于UserProfile目录中,WinLogon就可能执行DLL代码,从而导致用户的权限提升。
CVSS Information
N/A
Vulnerability Type
N/A