Vulnerabilities > CVE-2001-1519 - Unspecified vulnerability in Microsoft Windows 2000

047910
CVSS 0.0 - NONE
Attack vector
UNKNOWN
Attack complexity
UNKNOWN
Privileges required
UNKNOWN
Confidentiality impact
UNKNOWN
Integrity impact
UNKNOWN
Availability impact
UNKNOWN
microsoft
exploit available

Summary

RunAs (runas.exe) in Windows 2000 allows local users to create a spoofed named pipe when the service is stopped, then capture cleartext usernames and passwords when clients connect to the service. NOTE: the vendor disputes this issue, saying that administrative privileges are already required to exploit it

Vulnerable Configurations

Part Description Count
OS
Microsoft
1

Exploit-Db

descriptionMicrosoft Windows 2000 RunAs Service Named Pipe Hijacking Vulnerability. CVE-2001-1519. Local exploit for windows platform
idEDB-ID:21069
last seen2016-02-02
modified2001-12-11
published2001-12-11
reporterCamisade
sourcehttps://www.exploit-db.com/download/21069/
titleMicrosoft Windows 2000 RunAs Service Named Pipe Hijacking Vulnerability