CVE-2002-0869

Unknown vulnerability in the hosting process (dllhost.exe) for Microsoft Internet Information Server (IIS) 4.0 through 5.1 allows remote attackers to gain privileges by executing an out of process application that acquires LocalSystem privileges, aka "Out of Process Privilege Elevation."
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:microsoft:internet_information_server:4.0:*:*:*:*:*:*:*
cpe:2.3:a:microsoft:internet_information_services:5.0:*:*:*:*:*:*:*

History

20 Nov 2024, 23:40

Type Values Removed Values Added
References () http://archives.neohapsis.com/archives/vulnwatch/2002-q4/0059.html - () http://archives.neohapsis.com/archives/vulnwatch/2002-q4/0059.html -
References () http://marc.info/?l=bugtraq&m=103642839205574&w=2 - () http://marc.info/?l=bugtraq&m=103642839205574&w=2 -
References () http://www.ciac.org/ciac/bulletins/n-011.shtml - () http://www.ciac.org/ciac/bulletins/n-011.shtml -
References () http://www.iss.net/security_center/static/10502.php - Patch, Vendor Advisory () http://www.iss.net/security_center/static/10502.php - Patch, Vendor Advisory
References () http://www.li0n.pe.kr/eng/advisory/ms/iis_impersonation.txt - () http://www.li0n.pe.kr/eng/advisory/ms/iis_impersonation.txt -
References () https://docs.microsoft.com/en-us/security-updates/securitybulletins/2002/ms02-062 - () https://docs.microsoft.com/en-us/security-updates/securitybulletins/2002/ms02-062 -
References () https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A929 - () https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A929 -
References () https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A930 - () https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A930 -
References () https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A983 - () https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A983 -

Information

Published : 2002-11-12 05:00

Updated : 2024-11-20 23:40


NVD link : CVE-2002-0869

Mitre link : CVE-2002-0869

CVE.ORG link : CVE-2002-0869


JSON object : View

Products Affected

microsoft

  • internet_information_server
  • internet_information_services