CVE Database
/

CVE-2001-1517

Back to search

CVE-2001-1517

Published: Jul 14, 2005

Modified: Sep 16, 2024

PUBLISHED

Description

RunAs (runas.exe) in Windows 2000 stores cleartext authentication information in memory, which could allow attackers to obtain usernames and passwords by executing a process that is allocated the same memory page after termination of a RunAs command. NOTE: the vendor disputes this issue, saying that administrative privileges are already required to exploit it, and the original researcher did not respond to requests for additional information

VendorProductVersions

n/a

n/a

affected
n/a

References

3184
vdb-entry
x_refsource_BID
20011112 RADIX1112200102
mailing-list
x_refsource_VULNWATCH

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now