← Back

CVE-2004-2730

nvd nist
Published: Dec 31, 2004Modified: Apr 16, 2026

JSON object

Loading...
4.6
Vector
AV:L/AC:L/Au:N/C:P/I:P/A:P
Exploitability: 3.9 / Impact: 6.4
Source: NVD

Description

Sysinternals PsTools before 2.05, including (1) PsExec before 1.54, (2) PsGetsid before 1.41, (3) PsInfo before 1.61, (4) PsKill before 1.03, (5) PsList before 1.26, (6) PsLoglist before 2.51, (7) PsPasswd before 1.21, (8) PsService before 2.12, (9) PsSuspend before 1.05, and (10) PsShutdown before 2.32, does not properly disconnect from remote IPC$ and ADMIN$ shares, which allows local users to access the shares with elevated privileges by using the existing share mapping.

Affected (11)

11 products
Psexec
Psgetsid
Psinfo
Pskill
Pslist
Psloglist
Pspasswd
Psservice
Psshutdown
Pssuspend
Sysinternals Pstools
Configuration A
11 vulnerable
Vulnerable SoftwareAffected Versions
Up to 1.53
Up to 1.40
Up to 1.60
Up to 1.02
Up to 1.25
Up to 2.50
Up to 1.20
Up to 2.11
Up to 2.31
Up to 1.04
Up to 2.04

Related CWEs

References (12)

Source: cve@mitre.org
Vendor Advisory
Source: cve@mitre.org
Source: cve@mitre.org
Patch
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Patch
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108

Timeline

No history available yet.