PT-2006-7181 · Microsoft · Windows Xp

Published

2006-12-15

·

Updated

2020-11-23

·

CVE-2006-6579

CVSS v2.0

4.4

Medium

VectorAV:L/AC:M/Au:N/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions Microsoft Windows XP version
Description The issue is related to weak permissions for the %WINDIR%pchealthERRORREPQHEADLES folder, which allows local users to write and read files in this folder. This is demonstrated by an ASP shell that has write access by IWAM machine and read access by IUSR Machine.
Recommendations For Microsoft Windows XP, consider restricting access to the %WINDIR%pchealthERRORREPQHEADLES folder to prevent local users from writing and reading files. As a temporary workaround, consider disabling write access to the %WINDIR%pchealthERRORREPQHEADLES folder for the IWAM machine user and read access for the IUSR Machine user until a patch is available. At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2006-6579

Affected Products

Windows Xp