CVE-2002-0367 – Microsoft Windows Privilege Escalation Vulnerability
https://notcve.org/view.php?id=CVE-2002-0367
smss.exe debugging subsystem in Windows NT and Windows 2000 does not properly authenticate programs that connect to other programs, which allows local users to gain administrator or SYSTEM privileges by duplicating a handle to a privileged process, as demonstrated by DebPloit. smss.exe debugging subsystem in Microsoft Windows does not properly authenticate programs that connect to other programs, which allows local users to gain administrator or SYSTEM privileges. • https://www.exploit-db.com/exploits/21344 http://marc.info/?l=ntbugtraq&m=101614320402695&w=2 http://www.iss.net/security_center/static/8462.php http://www.securityfocus.com/archive/1/262074 http://www.securityfocus.com/archive/1/264441 http://www.securityfocus.com/archive/1/264927 http://www.securityfocus.com/bid/4287 https://docs.microsoft.com/en-us/security-updates/securitybulletins/2002/ms02-024 https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval •
CVE-2002-0597 – Microsoft Windows Server 2000 - Lanman Denial of Service
https://notcve.org/view.php?id=CVE-2002-0597
LANMAN service on Microsoft Windows 2000 allows remote attackers to cause a denial of service (CPU/memory exhaustion) via a stream of malformed data to microsoft-ds port 445. • https://www.exploit-db.com/exploits/21389 https://www.exploit-db.com/exploits/21388 http://archives.neohapsis.com/archives/vulnwatch/2002-q2/0025.html http://online.securityfocus.com/archive/1/268066 http://support.microsoft.com/default.aspx?scid=kb%3B%5BLN%5D%3BQ320751 http://www.iss.net/security_center/static/8867.php http://www.kb.cert.org/vuls/id/693099 http://www.osvdb.org/5179 http://www.securityfocus.com/bid/4532 •
CVE-2002-0224
https://notcve.org/view.php?id=CVE-2002-0224
The MSDTC (Microsoft Distributed Transaction Service Coordinator) for Microsoft Windows 2000, Microsoft IIS 5.0 and SQL Server 6.5 through SQL 2000 0.0 allows remote attackers to cause a denial of service (crash or hang) via malformed (random) input. El MSDTC (Microsoft Distributed Transaction Service Coordinator) para MS Windows 2000, MS IIS 5.0 y SQL Server 6.5 a 2000 permite a atacantes remotos causar una denegación de servicio (caída o cuelgue) mediante entradas malformadas (aleatorias). • http://online.securityfocus.com/archive/1/253360 http://online.securityfocus.com/archive/1/268593 http://www.iss.net/security_center/static/8046.php http://www.securityfocus.com/bid/4006 •
CVE-2002-0051
https://notcve.org/view.php?id=CVE-2002-0051
Windows 2000 allows local users to prevent the application of new group policy settings by opening Group Policy files with exclusive-read access. Windows 2000 permite a usuarios locales impedir la aplicación de nuevas configuraciones de política de seguridad de grupos abriendo los ficheros de política de grupos con acceso de lectura exclusivo. • http://online.securityfocus.com/archive/1/244329 http://www.securityfocus.com/bid/4438 https://docs.microsoft.com/en-us/security-updates/securitybulletins/2002/ms02-016 https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A38 • CWE-667: Improper Locking •
CVE-2002-0151
https://notcve.org/view.php?id=CVE-2002-0151
Buffer overflow in Multiple UNC Provider (MUP) in Microsoft Windows operating systems allows local users to cause a denial of service or possibly gain SYSTEM privileges via a long UNC request. Desbordamiento de buffer en el proveedor múltiple de UNC (MUP) en sistemas operativos Microsoft Windows permite a usuarios locales provocar una denegación de servicio y posiblemente ganar privilegios de SYSTEM mediante una petición UNC larga. • http://marc.info/?l=bugtraq&m=101793727306282&w=2 http://www.iss.net/security_center/static/8752.php http://www.securityfocus.com/bid/4426 https://docs.microsoft.com/en-us/security-updates/securitybulletins/2002/ms02-017 https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A145 https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A89 •