First published: Thu Oct 06 2005(Updated: )
Microsoft Windows 2000 before Update Rollup 1 for SP4 does not apply group policies if the user logs on using UPN credentials with a trailing dot, which prevents Windows 2000 from finding the correct domain controller and could allow the user to bypass intended restrictions.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Microsoft Windows 2000 | =sp4 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2005-3173 is rated as a moderate severity vulnerability.
To fix CVE-2005-3173, apply Update Rollup 1 for SP4 on Microsoft Windows 2000.
CVE-2005-3173 affects Microsoft Windows 2000 systems running Service Pack 4.
The impact of CVE-2005-3173 is that it can allow users to bypass intended restrictions by improperly applying group policies.
CVE-2005-3173 typically requires local access as it deals with user logon credentials.