CVE-2012-0009: Critical severity Microsoft Windows Server 2003 vulnerability
Untrusted search path vulnerability in the Windows Object Packager configuration in Microsoft Windows XP SP2 and SP3 and Server 2003 SP2 allows local users to gain privileges via a Trojan horse executable file in the current working directory, as demonstrated by a directory that contains a file with an embedded packaged object, aka "Object Packager Insecure Executable Launching Vulnerability."
Affected Software
Event History
Frequently Asked Questions
Which systems are affected?
Microsoft Windows XP Service Pack 2 and Service Pack 3, and Microsoft Windows Server 2003 Service Pack 2, are identified as affected.
What does an attacker need to exploit this issue?
The attacker needs to place a Trojan horse executable in the current working directory and rely on a file containing an embedded packaged object being opened or processed from that directory.
Is this primarily a remote attack scenario?
The vulnerability description identifies local users as the attackers. It involves a malicious executable in the current working directory rather than describing a network-delivered exploit path.