Windows NT 4.0 Privilege Escalation Vulnerability
Due to a flaw in the NTLM Security Support Provider a local user can escalate his privileges on a Windows NT 4.0 installation.
Steve Manzuik
February 6, 2001
1 Min Read
Reported February 7, 2001, by BindView RAZOR Team. VERSIONS AFFECTED DESCRIPTIONA local promotion vulnerability has been discovered in NT 4.0, all versions including Service Pack 6a (SP6a). A flaw in the way the NT LAN Manager (NTLM) Security Support Provider handles client requests can let a malicious user run a program as a privileged user. VENDOR RESPONSE Microsoft has released a security bulletin, MS01-008. The original RAZOR advisory is available at: http://razor.bindview.com/publish/advisories/adv_NTLMSSP.html CREDITDiscovered by BindView RAZOR Team. |
About the Author
Sign up for the ITPro Today newsletter
Stay on top of the IT universe with commentary, news analysis, how-to's, and tips delivered to your inbox daily.
You May Also Like