Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2006-4465

Опубликовано: 31 авг. 2006
Источник: nvd
CVSS2: 10
EPSS Средний

Описание

Microsoft Terminal Server, when running an application session with the "Start program at logon" and "Override settings from user profile and Client Connection Manager wizard" options, allows local users to execute arbitrary code by forcing an Explorer error. NOTE: a third-party researcher has stated that the options are "a convenience to users" and were not intended to restrict execution of arbitrary code

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:microsoft:terminal_server:*:*:*:*:*:*:*:*

EPSS

Процентиль: 96%
0.23355
Средний

10 Critical

CVSS2

Дефекты

NVD-CWE-Other

Связанные уязвимости

github
почти 4 года назад

** DISPUTED ** Microsoft Terminal Server, when running an application session with the "Start program at logon" and "Override settings from user profile and Client Connection Manager wizard" options, allows local users to execute arbitrary code by forcing an Explorer error. NOTE: a third-party researcher has stated that the options are "a convenience to users" and were not intended to restrict execution of arbitrary code.

EPSS

Процентиль: 96%
0.23355
Средний

10 Critical

CVSS2

Дефекты

NVD-CWE-Other