PT-2005-1172 · Microsoft · Windows Xp
Jean-Baptiste Marchand
·
Published
2005-02-08
·
Updated
2018-10-12
·
CVE-2005-0051
CVSS v2.0
7.5
High
| Vector | AV:N/AC:L/Au:N/C:P/I:P/A:P |
Name of the Vulnerable Software and Affected Versions
Windows XP versions SP1 through SP2
Description
The issue allows remote attackers to obtain sensitive information, such as users who are accessing resources, via an anonymous logon using a named pipe. This is due to improper authentication in the Server service (srvsvc.dll).
Recommendations
For Windows XP versions SP1 and SP2, apply the necessary security patch to fix the Named Pipe Vulnerability.
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Windows Xp