First published: Tue Mar 29 2005(Updated: )
Remote Desktop in Windows XP SP1 does not verify the "Force shutdown from a remote system" setting, which allows remote attackers to shut down the system by executing TSShutdn.exe.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Microsoft Windows XP | =sp1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2005-0904 has a moderate severity, as it allows remote attackers to shut down the system.
To fix CVE-2005-0904, it is recommended to upgrade to a later service pack beyond Windows XP SP1.
CVE-2005-0904 exposes your system to unauthorized remote shutdowns, resulting in potential downtime.
Only Windows XP SP1 is affected by CVE-2005-0904.
Attackers exploit CVE-2005-0904 by executing TSShutdn.exe without proper verification of shutdown settings.