PT-2002-1747 · Microsoft · Windows 2000+1

CVE-2002-0725

·

Publicado

2002-08-20

·

Atualizado

2024-02-21

CVSS v2.0

4.6

Média

VetorAV:L/AC:L/Au:N/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions Windows NT versions prior to 4.0 SP3 Windows 2000 versions prior to SP3
Description The issue allows local attackers to hide file usage activities by creating a hard link to the target file. This causes the link to be recorded in the audit trail instead of the target file, potentially masking malicious activities.
Recommendations For Windows NT 4.0, apply Service Pack 3 or later to resolve the issue. For Windows 2000, apply Service Pack 3 or later to resolve the issue. As a temporary workaround, consider monitoring file system activities closely to detect potential misuse of hard links until a patch is applied.

Correção

Link Following

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2002-0725

Produtos afetados

Windows 2000
Windows Nt