Vulnerabilities > CVE-2004-2176 - Unspecified vulnerability in Microsoft Windows XP

047910
CVSS 4.6 - MEDIUM
Attack vector
LOCAL
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
PARTIAL
Integrity impact
PARTIAL
Availability impact
PARTIAL
local
low complexity
microsoft
exploit available

Summary

The Internet Connection Firewall (ICF) in Microsoft Windows XP SP2 is configured by default to trust sessmgr.exe, which allows local users to use sessmgr.exe to create a local listening port that bypasses the ICF access controls.

Vulnerable Configurations

Part Description Count
OS
Microsoft
3

Exploit-Db

descriptionMicrosoft Windows XP Weak Default Configuration Vulnerability. CVE-2004-2176. Local exploit for windows platform
idEDB-ID:24682
last seen2016-02-02
modified2004-10-13
published2004-10-13
reporteramericanidiot
sourcehttps://www.exploit-db.com/download/24682/
titleMicrosoft Windows XP Weak Default Configuration Vulnerability