7.2
CVSSv2

CVE-2000-0100

Published: 29/12/1999 Updated: 12/10/2018
CVSS v2 Base Score: 7.2 | Impact Score: 10 | Exploitability Score: 3.9
VMScore: 725
Vector: AV:L/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Summary

The SMS Remote Control program is installed with insecure permissions, which allows local users to gain privileges by modifying or replacing the program.

Vulnerable Product Search on Vulmon Subscribe to Product

microsoft systems management server 2.0

Exploits

source: wwwsecurityfocuscom/bid/945/info The default permissions applied to the directory containing the SMS Remote Control executable allow any user to replace the executable with any other executable The new executable will run with System privileges after the next reboot Replace %SMS_LOCAL_DIR%\MS\SMS\CLICOMP\REMCTRL\WUSER32EXE wit ...