Vulnerabilities > CVE-2001-0046 - Unspecified vulnerability in Microsoft Windows 2000 and Windows NT
Attack vector
LOCAL Attack complexity
LOW Privileges required
NONE Confidentiality impact
PARTIAL Integrity impact
PARTIAL Availability impact
PARTIAL Summary
The default permissions for the SNMP Parameters registry key in Windows NT 4.0 allows remote attackers to read and possibly modify the SNMP community strings to obtain sensitive information or modify network configuration, aka one of the "Registry Permissions" vulnerabilities.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
OS | 2 |
Nessus
NASL family | Windows |
NASL id | SMB_REG_SNMP_ACCESS.NASL |
description | The registry key HKLM\SYSTEM\CurrentControlSet\Services\SNMP\Parameters can be modified by users who are not in the admin group. Write access to this key allows an unprivileged user to gain additional privileges. |
last seen | 2020-06-01 |
modified | 2020-06-02 |
plugin id | 11868 |
published | 2003-10-08 |
reporter | This script is Copyright (C) 2003-2018 Tenable Network Security, Inc. |
source | https://www.tenable.com/plugins/nessus/11868 |
title | Microsoft Windows SMB Registry : SNMP Registry Key Permission Weakness Local Privilege Escalation |
Oval
accepted | 2008-03-24T04:00:13.791-04:00 | ||||||||
class | vulnerability | ||||||||
contributors |
| ||||||||
definition_extensions |
| ||||||||
description | The default permissions for the SNMP Parameters registry key in Windows NT 4.0 allows remote attackers to read and possibly modify the SNMP community strings to obtain sensitive information or modify network configuration, aka one of the "Registry Permissions" vulnerabilities. | ||||||||
family | windows | ||||||||
id | oval:org.mitre.oval:def:139 | ||||||||
status | accepted | ||||||||
submitted | 2004-06-08T12:00:00.000-04:00 | ||||||||
title | Default Registry Permissions on SNMP Parameters | ||||||||
version | 71 |