4.6
CVSSv2

CVE-2004-2176

Published: 31/12/2004 Updated: 05/09/2008
CVSS v2 Base Score: 4.6 | Impact Score: 6.4 | Exploitability Score: 3.9
VMScore: 465
Vector: AV:L/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

The Internet Connection Firewall (ICF) in Microsoft Windows XP SP2 is configured by default to trust sessmgr.exe, which allows local users to use sessmgr.exe to create a local listening port that bypasses the ICF access controls.

Vulnerable Product Search on Vulmon Subscribe to Product

microsoft windows xp

Exploits

source: wwwsecurityfocuscom/bid/11410/info Microsoft Windows XP Service Pack 2 is reported prone to a weak default configuration vulnerability Internet Connection Firewall (ICF) includes functionality that controls what binaries are permitted to listen for incoming connections It is reported that one of the executables that is permitte ...