CVE-2005-3168

Microsoft Windows 2000 <Update Rollup 1 for SP4 - Info Disclosure

Title source: llm
STIX 2.1

Description

The SECEDIT command on Microsoft Windows 2000 before Update Rollup 1 for SP4, when using a security template to set Access Control Lists (ACLs) on folders, does not apply ACLs on folders that are listed after a long folder entry, which could result in less secure permissions than specified by the template.

References (2)

Core 2
Core References
Patch, Vendor Advisory vendor-advisory x_refsource_mskb
http://support.microsoft.com/kb/834424/
Patch, Vendor Advisory vendor-advisory x_refsource_mskb
http://support.microsoft.com/kb/900345

Scores

EPSS 0.0381
EPSS Percentile 89.0%

Details

Status published
Products (1)
microsoft/windows_2000
Published Oct 06, 2005
Tracked Since Feb 18, 2026