PT-2004-3071 · Microsoft · Internet Connection Firewall+1
Published
2004-12-31
·
Updated
2008-09-05
·
CVE-2004-2176
CVSS v2.0
4.6
Medium
| Vector | AV:L/AC:L/Au:N/C:P/I:P/A:P |
Name of the Vulnerable Software and Affected Versions
Microsoft Windows XP SP2
Description
The issue concerns the Internet Connection Firewall (ICF) in Microsoft Windows XP SP2, which is configured by default to trust sessmgr.exe. This trust allows local users to utilize sessmgr.exe for creating a local listening port, effectively bypassing the ICF access controls.
Recommendations
For Microsoft Windows XP SP2, consider restricting access to sessmgr.exe to prevent its misuse in bypassing ICF controls. As a temporary workaround, limiting the functionality of sessmgr.exe can help minimize the risk of exploitation until a more permanent solution is available.
Exploit
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Internet Connection Firewall
Windows Xp Sp2