Untrusted search path vulnerability in Winlogon in Microsoft Windows 2000 SP4, when SafeDllSearchMode is disabled, allows local users to gain privileges via a malicious DLL in the UserProfile directory, aka "User Profile Elevation of Privilege Vulnerability."
Weaknesses in this category are related to the management of permissions, privileges, and other security features that are used to perform access control.
Link | Tags |
---|---|
http://securitytracker.com/id?1016662 | vdb entry |
https://docs.microsoft.com/en-us/security-updates/securitybulletins/2006/ms06-051 | vendor advisory |
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A155 | vdb entry signature |
http://secunia.com/advisories/21417 | third party advisory patch vendor advisory |
http://www.vupen.com/english/advisories/2006/3216 | vdb entry |
http://www.securityfocus.com/bid/19375 | vdb entry |
http://www.kb.cert.org/vuls/id/337244 | third party advisory us government resource |