CVE-2004-2730

Sysinternals PsTools before 2.05, including (1) PsExec before 1.54, (2) PsGetsid before 1.41, (3) PsInfo before 1.61, (4) PsKill before 1.03, (5) PsList before 1.26, (6) PsLoglist before 2.51, (7) PsPasswd before 1.21, (8) PsService before 2.12, (9) PsSuspend before 1.05, and (10) PsShutdown before 2.32, does not properly disconnect from remote IPC$ and ADMIN$ shares, which allows local users to access the shares with elevated privileges by using the existing share mapping.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:microsoft:psexec:*:*:*:*:*:*:*:*
cpe:2.3:a:microsoft:psgetsid:*:*:*:*:*:*:*:*
cpe:2.3:a:microsoft:psinfo:*:*:*:*:*:*:*:*
cpe:2.3:a:microsoft:pskill:*:*:*:*:*:*:*:*
cpe:2.3:a:microsoft:pslist:*:*:*:*:*:*:*:*
cpe:2.3:a:microsoft:psloglist:*:*:*:*:*:*:*:*
cpe:2.3:a:microsoft:pspasswd:*:*:*:*:*:*:*:*
cpe:2.3:a:microsoft:psservice:*:*:*:*:*:*:*:*
cpe:2.3:a:microsoft:psshutdown:*:*:*:*:*:*:*:*
cpe:2.3:a:microsoft:pssuspend:*:*:*:*:*:*:*:*
cpe:2.3:a:microsoft:sysinternals_pstools:*:*:*:*:*:*:*:*

History

No history.

Information

Published : 2004-12-31 05:00

Updated : 2024-02-28 10:42


NVD link : CVE-2004-2730

Mitre link : CVE-2004-2730

CVE.ORG link : CVE-2004-2730


JSON object : View

Products Affected

microsoft

  • psexec
  • psshutdown
  • pspasswd
  • pskill
  • pslist
  • pssuspend
  • psinfo
  • psgetsid
  • psloglist
  • sysinternals_pstools
  • psservice
CWE
CWE-264

Permissions, Privileges, and Access Controls