Back to search
CVE-2003-1246
Published: Nov 16, 2005
Modified: Sep 17, 2024
PUBLISHED
Description
NtCreateSymbolicLinkObject in ntdll.dll in Integrity Protection Driver (IPD) 1.2 and 1.3 allows local users to create and overwrite arbitrary files via a symlink attack on \winnt\system32\drivers using the subst command.
| Vendor | Product | Versions |
|---|---|---|
n/a | n/a | affected n/a |
References
ipd-ntcreatesymboliclinkobject-subs-symlink(10979)
vdb-entry
x_refsource_XF
20030103 Pedestal Software Security Notice
mailing-list
x_refsource_BUGTRAQ
20030103 Another way to bypass Integrity Protection Driver ('subst' vuln)
mailing-list
x_refsource_BUGTRAQ
6511
vdb-entry
x_refsource_BID
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now