Summary
Windows 2000 allows local users to prevent the application of new group policy settings by opening Group Policy files with exclusive-read access.
Attacker could block application of Group Policy
Affected Software:
Microsoft Windows 2000 Server
Microsoft Windows 2000 Advanced Server
Microsoft Windows 2000 Datacenter Server
See
http://www.microsoft.com/technet/security/bulletin/ms02-016.mspx
Severity
Classification
-
CVE CVE-2002-0051 -
CVSS Base Score: 4.6
AV:L/AC:L/Au:N/C:P/I:P/A:P
Related Vulnerabilities
- Microsoft .NET Framework Chart Control Information Disclosure Vulnerability (2567943)
- Microsoft Windows Netlogon Service Denial of Service Vulnerability (2207559)
- Flaw in SMB Signing Could Enable Group Policy to be Modified (329170)
- Microsoft JScript and VBScript Scripting Engines Information Disclosure Vulnerability (2475792)
- Microsoft FrontPage Information Disclosure Vulnerability (2825621)