Vulnerability CVE-2007-0843


Published: 2007-02-22   Modified: 2012-02-12

Description:
The ReadDirectoryChangesW API function on Microsoft Windows 2000, XP, Server 2003, and Vista does not check permissions for child objects, which allows local users to bypass permissions by opening a directory with LIST (READ) access and using ReadDirectoryChangesW to monitor changes of files that do not have LIST permissions, which can be leveraged to determine filenames, access times, and other sensitive information.

See advisories in our WLB2 database:
Topic
Author
Date
Med.
Microsoft Windows 2000/XP/2003/Vista ReadDirectoryChangesW informaton leak
3APA3A
24.02.2007

Type:

CWE-264

(Permissions, Privileges, and Access Controls)

CVSS2 => (AV:L/AC:L/Au:N/C:P/I:P/A:P)

CVSS Base Score
Impact Subscore
Exploitability Subscore
4.6/10
6.4/10
3.9/10
Exploit range
Attack complexity
Authentication
Local
Low
No required
Confidentiality impact
Integrity impact
Availability impact
Partial
Partial
Partial
Affected software
Microsoft -> Windows 2000 
Microsoft -> Windows 2003 server 
Microsoft -> Windows vista 
Microsoft -> Windows xp 

 References:
http://lists.grok.org.uk/pipermail/full-disclosure/2007-February/052613.html
http://securityreason.com/securityalert/2282
http://securityvulns.com/advisories/readdirectorychanges.asp
http://www.securityfocus.com/archive/1/460887/100/0/threaded
http://www.securityfocus.com/archive/1/460899/100/0/threaded
http://www.securityfocus.com/bid/22664
http://www.vupen.com/english/advisories/2007/0701
https://exchange.xforce.ibmcloud.com/vulnerabilities/32644

Copyright 2024, cxsecurity.com

 

Back to Top