Unknown vulnerability in the hosting process (dllhost.exe) for Microsoft Internet Information Server (IIS) 4.0 through 5.1 allows remote attackers to gain privileges by executing an out of process application that acquires LocalSystem privileges, aka "Out of Process Privilege Elevation."
References
Configurations
Configuration 1 (hide)
|
History
20 Nov 2024, 23:40
Type | Values Removed | Values Added |
---|---|---|
References | () http://archives.neohapsis.com/archives/vulnwatch/2002-q4/0059.html - | |
References | () http://marc.info/?l=bugtraq&m=103642839205574&w=2 - | |
References | () http://www.ciac.org/ciac/bulletins/n-011.shtml - | |
References | () http://www.iss.net/security_center/static/10502.php - Patch, Vendor Advisory | |
References | () http://www.li0n.pe.kr/eng/advisory/ms/iis_impersonation.txt - | |
References | () https://docs.microsoft.com/en-us/security-updates/securitybulletins/2002/ms02-062 - | |
References | () https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A929 - | |
References | () https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A930 - | |
References | () https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A983 - |
Information
Published : 2002-11-12 05:00
Updated : 2024-11-20 23:40
NVD link : CVE-2002-0869
Mitre link : CVE-2002-0869
CVE.ORG link : CVE-2002-0869
JSON object : View
Products Affected
microsoft
- internet_information_server
- internet_information_services
CWE