Windows NT 4.0 Privilege Escalation Vulnerability

Due to a flaw in the NTLM Security Support Provider a local user can escalate his privileges on a Windows NT 4.0 installation.

Steve Manzuik

February 6, 2001

1 Min Read
ITPro Today logo

Reported February 7, 2001, by BindView RAZOR Team.

VERSIONS AFFECTED

DESCRIPTIONA local promotion vulnerability has been discovered in NT 4.0, all versions including Service Pack 6a (SP6a). A flaw in the way the NT LAN Manager (NTLM) Security Support Provider handles client requests can let a malicious user run a program as a privileged user.

VENDOR RESPONSE

Microsoft has released a security bulletin, MS01-008.

The original RAZOR advisory is available at:

http://razor.bindview.com/publish/advisories/adv_NTLMSSP.html

CREDITDiscovered by BindView RAZOR Team.

Sign up for the ITPro Today newsletter
Stay on top of the IT universe with commentary, news analysis, how-to's, and tips delivered to your inbox daily.

You May Also Like