Description
Microsoft Windows XP has weak permissions (FILE_WRITE_DATA and FILE_READ_DATA for Everyone) for %WINDIR%\pchealth\ERRORREP\QHEADLES, which allows local users to write and read files in this folder, as demonstrated by an ASP shell that has write access by IWAM_machine and read access by IUSR_Machine.
Remediation
References
Related Vulnerabilities
PHP Out-of-bounds Write Vulnerability (CVE-2016-5399)
TYPO3 Insertion of Sensitive Information into Log File Vulnerability (CVE-2024-55891)
WebLogic CVE-2019-2888 Vulnerability (CVE-2019-2888)
WordPress Plugin WordPress Download Manager Multiple Vulnerabilities (2.9.49)
WordPress Plugin WP Fastest Cache Unspecified Vulnerability (0.8.8.5)