The Internet Connection Firewall (ICF) in Microsoft Windows XP SP2 is configured by default to trust sessmgr.exe, which allows local users to use sessmgr.exe to create a local listening port that bypasses the ICF access controls.
Link | Tags |
---|---|
http://www.securityfocus.com/bid/11410 | vdb entry exploit |
http://www.securityfocus.com/archive/1/378508 | mailing list |