WatchGuard ServerLock for Windows 2000 before SL 2.0.3 allows local users to load arbitrary modules via the OpenProcess() function, as demonstrated using (1) a DLL injection attack, (2) ZwSetSystemInformation, and (3) API hooking in OpenProcess.
Link | Tags |
---|---|
https://exchange.xforce.ibmcloud.com/vulnerabilities/12665 | vdb entry |
http://www.osvdb.org/6578 | vdb entry |
http://marc.info/?l=bugtraq&m=105848106631132&w=2 | mailing list |
http://www.securityfocus.com/bid/8222 | vdb entry vendor advisory |
http://secunia.com/advisories/9310 | third party advisory |