CVE
- Id
- 1775
- CVE No.
- CVE-2000-0197
- Status
- Candidate
- Description
- The Windows NT scheduler uses the drive mapping of the interactive user who is currently logged onto the system, which allows the local user to gain privileges by providing a Trojan horse batch file in place of the original batch file.
- Phase
- Proposed (20000322)
- Votes
- ACCEPT(3) Baker, Cole, Levy | MODIFY(1) Frech | NOOP(2) Blake, Ozancin | REJECT(1) LeBlanc | REVIEWING(1) Wall
- Comments
- LeBlanc> this is just bad security practice, not a vulnerability | Frech> XF:nt-at-drive-mappings