PT-2002-1747 · Microsoft · Windows 2000+1

Published

2002-08-20

·

Updated

2024-02-21

·

CVE-2002-0725

CVSS v2.0

4.6

Medium

VectorAV:L/AC:L/Au:N/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions Windows NT versions prior to 4.0 SP3 Windows 2000 versions prior to SP3
Description The issue allows local attackers to hide file usage activities by creating a hard link to the target file. This causes the link to be recorded in the audit trail instead of the target file, potentially masking malicious activities.
Recommendations For Windows NT 4.0, apply Service Pack 3 or later to resolve the issue. For Windows 2000, apply Service Pack 3 or later to resolve the issue. As a temporary workaround, consider monitoring file system activities closely to detect potential misuse of hard links until a patch is applied.

Fix

Link Following

Weakness Enumeration

Related Identifiers

CVE-2002-0725

Affected Products

Windows 2000
Windows Nt