First published: Mon Feb 14 2000(Updated: )
The Windows NT scheduler uses the drive mapping of the interactive user who is currently logged onto the system, which allows the local user to gain privileges by providing a Trojan horse batch file in place of the original batch file.
Credit: cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Microsoft Windows NT | =4.0 | |
=4.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2000-0197 is considered a high severity vulnerability due to its ability to allow privilege escalation.
To mitigate CVE-2000-0197, ensure that users do not have permissions to replace batch files and consider applying any available patches.
CVE-2000-0197 specifically affects Microsoft Windows NT version 4.0.
CVE-2000-0197 facilitates local privilege escalation attacks through the execution of a Trojan horse batch file.
CVE-2000-0197 is a local vulnerability and can only be exploited by users with local access to the system.