Microsoft Windows 2000 before Update Rollup 1 for SP4, when the "audit directory service access" policy is enabled, does not record a 565 event message for File Delete Child operations on an Active Directory object in the security event log, which could allow attackers to conduct unauthorized activities without detection.
Link | Tags |
---|---|
http://support.microsoft.com/kb/833873 | patch vendor advisory |
http://support.microsoft.com/kb/900345 | patch vendor advisory |