First published: Mon Jul 16 2001(Updated: )
Task Manager in Windows 2000 does not allow local users to end processes with uppercase letters named (1) winlogon.exe, (2) csrss.exe, (3) smss.exe and (4) services.exe via the Process tab which could allow local users to install Trojan horses that cannot be stopped with the Task Manager.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Microsoft Windows 2000 | ||
Microsoft Windows 2000 | =sp1 | |
Microsoft Windows 2000 | =sp2 | |
Microsoft Windows Terminal Services | ||
Microsoft Windows Terminal Services | =sp1 | |
Microsoft Windows Terminal Services | =sp2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2001-1238 is considered to be a moderate severity vulnerability because it allows local users to potentially install malicious software.
To mitigate CVE-2001-1238, users should apply the latest patches from Microsoft for Windows 2000.
CVE-2001-1238 affects specific critical system processes such as winlogon.exe, csrss.exe, smss.exe, and services.exe.
CVE-2001-1238 affects Windows 2000 and its service packs SP1 and SP2 as well as Windows Terminal Services.
CVE-2001-1238 cannot be exploited remotely as it requires local user access to the system.