← Back

CVE-2004-0894

nvd nist
Published: Jan 10, 2005Modified: Apr 16, 2026

JSON object

Loading...
7.2
Vector
AV:L/AC:L/Au:N/C:C/I:C/A:C
Exploitability: 3.9 / Impact: 10.0
Source: NVD

Description

LSASS (Local Security Authority Subsystem Service) of Windows 2000 Server and Windows Server 2003 does not properly validate connection information, which allows local users to gain privileges via a specially-designed program.

Affected (26)

3 products
Windows 2000
Windows 2003 Server
Windows Xp
Configuration A
26 vulnerable
Vulnerable SoftwareAffected Versions
Microsoft
All versions
All versions
All versions
All versions
All versions
Microsoft
Version datacenter_64-bit sp1_beta_1
Version enterprise
Version enterprise sp1_beta_1
Version enterprise_64-bit
Version enterprise_64-bit sp1_beta_1
Version r2
Version r2
Version r2 sp1_beta_1
Version standard
Version standard sp1_beta_1
Version web
Version web sp1_beta_1
Microsoft
All versions
All versions
All versions
All versions
All versions
All versions
All versions
All versions
All versions

References (16)

Source: af854a3a-2127-422b-91ae-364da2661108

Timeline

No history available yet.