A Windows NT 4.0 user can gain administrative rights by forcing NtOpenProcessToken to succeed regardless of the user's permissions, aka GetAdmin.
Weaknesses in this category are related to the management of permissions, privileges, and other security features that are used to perform access control.
Link | Tags |
---|---|
http://support.microsoft.com/default.aspx?scid=kb%3B%5BLN%5D%3BQ146965 | vendor advisory |