CyberSec.Space Logo
返回 CVE 瀏覽器

CVE-2002-0367

Known Exploited (CISA KEV)HIGH
7.8
CVSS Severity Score
EPSS Score47.5310%
EPSS Percentile88.86th
Published2002年6月25日
Last Modified2026年4月16日

Vulnerability Description

smss.exe debugging subsystem in Windows NT and Windows 2000 does not properly authenticate programs that connect to other programs, which allows local users to gain administrator or SYSTEM privileges by duplicating a handle to a privileged process, as demonstrated by DebPloit.

Affected Platforms (CPE)

💻
Microsoft

Windows 2000

All versions
💻
Microsoft

Windows Nt

= 4.0
💻
Microsoft

Windows Nt

= 4.0

References & Advisories

相關漏洞威脅