[Forgot Password]
Login  Register Subscribe

30430

 
 

423868

 
 

247862

 
 

909

 
 

194603

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

MS11-010 - Elevated privileges vulnerability in the Microsoft Windows Client/Server Run-time Subsystem (CSRSS) in Windows XP and Windows Server 2003

ID: oval:org.secpod.oval:def:89Date: (C)2011-02-09   (M)2022-10-10
Class: VULNERABILITYFamily: windows




The host is installed with Windows Client/Server Run-time Subsystem (CSRSS) in Windows XP and Windows Server 2003 and is prone to elevated privileges vulnerability. A flaw is present in CSRSS, which fails to handle a specially crafted application that continues to run even after log off. Successful exploitation could allow attackers to obtain elevated privileges by starting the application and acquire the logon credentials of subsequent users. An attacker must have valid logon credentials and be able to log on locally to exploit this vulnerability.

Platform:
Microsoft Windows Server 2003
Microsoft Windows XP
Product:
Windows Client/Server Run-time Subsystem
Reference:
CVE-2011-0030
CVE    1
CVE-2011-0030
CPE    8
cpe:/o:microsoft:windows_2003_server::sp2
cpe:/o:microsoft:windows_2003_server::sp2:itanium
cpe:/o:microsoft:windows_xp:-:sp2:x64
cpe:/o:microsoft:windows_2003_server::sp2:x64
...

© SecPod Technologies