Bugsalert.com
Security News about Viruses, Spyware,
Trojans, Malware, XSS attacks.

CVE-2008-1436 (windows-nt, Windows Server 2003, Windows Server 2008)

BugsAlert Home > CVE-2008-1436 (windows-nt, Windows Server 2003, Windows Server 2008)
 
 

Microsoft Windows XP Professional SP2, Vista, and Server 2003 and 2008 does not properly assign activities to the (1) NetworkService and (2) LocalService accounts, which might allow context-dependent attackers to gain privileges by using one service process to capture a resource from a second service process that has a LocalSystem privilege-escalation ability, related to improper management of the SeImpersonatePrivilege user right, as originally reported for Internet Information Services (IIS).




Original Source: http://nvd.nist.gov/nvd.cfm?cvename=CVE-2008-1436

Learn more about CVE-2008-1436 (windows-nt, Windows Server 2003, Windows Server 2008)
 
Tags: cve-2008-1436 windows-nt windows server 2003 windows server
 2008

Related Items

      CinematicMP3 NCTAudioInformation2 ActiveX Control Buffer Overflow

      CVE-2008-4899 (rateme)

      FrSIRT - WebPortal "aid" Parameter Remote SQL Injection Vulnerability

      Is the Hallmark Postcard virus real or hoax?

      rPath update for cups

      Bugtraq: [SECURITY] [DSA 1614-1] New iceweasel packages fix several vulnerabilities

      FrSIRT - SuSE Security Update Fixes Openwsman Remote Vulnerabilities

 

Pixel