NT Subst.exe Vulnerability
BID:833
Info
NT Subst.exe Vulnerability
| Bugtraq ID: | 833 |
| Class: | Unknown |
| CVE: | |
| Remote: | No |
| Local: | Yes |
| Published: | Nov 30 1999 12:00AM |
| Updated: | Nov 30 1999 12:00AM |
| Credit: | Posted to Bugtraq on November 30, 1999 by Dave Tarbatt <[email protected]>. |
| Vulnerable: |
Microsoft Windows NT 4.0 SP6 Microsoft Windows NT 4.0 SP5 Microsoft Windows NT 4.0 SP4 Microsoft Windows NT 4.0 SP3 Microsoft Windows NT 4.0 SP2 Microsoft Windows NT 4.0 SP1 Microsoft Windows NT 4.0 |
| Not Vulnerable: | |
Exploit / POC
NT Subst.exe Vulnerability
see discussion.
Example: On a network where home drives are typically H:
subst h: c:\temp\fakehome
logout and wait...
see discussion.
Example: On a network where home drives are typically H:
subst h: c:\temp\fakehome
logout and wait...
Solution / Fix
NT Subst.exe Vulnerability
Solution:
Currently the SecurityFocus staff are not aware of any vendor supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected].
Solution:
Currently the SecurityFocus staff are not aware of any vendor supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected].
References
NT Subst.exe Vulnerability
References:
References: