First published: Thu Oct 06 2005(Updated: )
Microsoft Windows 2000 before Update Rollup 1 for SP4 allows a local administrator to unlock a computer even if it has been locked by a domain administrator, which allows the local administrator to access the session as the domain administrator.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Microsoft Windows 2000 | =sp4 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2005-3175 is considered a high severity vulnerability due to the potential for local administrators to bypass security controls and access sensitive domain administrator sessions.
To fix CVE-2005-3175, update to Windows 2000 Update Rollup 1 for Service Pack 4 or later.
CVE-2005-3175 affects users of Microsoft Windows 2000 before Update Rollup 1 for Service Pack 4.
With CVE-2005-3175, a local administrator could unlock a locked workstation, gaining unauthorized access to a domain administrator's session.
While CVE-2005-3175 primarily affects legacy systems like Windows 2000, it highlights risks associated with local administrator privileges in outdated software.