Description
Microsoft Windows XP has weak permissions (FILE_WRITE_DATA and FILE_READ_DATA for Everyone) for %WINDIR%\pchealth\ERRORREP\QHEADLES, which allows local users to write and read files in this folder, as demonstrated by an ASP shell that has write access by IWAM_machine and read access by IUSR_Machine.
Remediation
References
Related Vulnerabilities
WordPress Plugin 404 to 301-Redirect, Log and Notify 404 Errors Cross-Site Request Forgery (3.0.8)
Apache Traffic Server CVE-2023-33933 Vulnerability (CVE-2023-33933)
Jenkins 7PK - Security Features Vulnerability (CVE-2014-9635)
WordPress 4.2.x Multiple Vulnerabilities (4.2 - 4.2.6)
Grafana Server-Side Request Forgery (SSRF) Vulnerability (CVE-2020-13379)