CVE-2006-4465 Information

Description

LICENSE README.md cvefilelist cvelist nvdcve nvdpages.sh scripts test-CVE-2017-1882.markdown test-CVE-2017-18822.markdown tmpvendorlinks DISPUTED LICENSE README.md cvefilelist cvelist nvdcve nvdpages.sh scripts test-CVE-2017-1882.markdown test-CVE-2017-18822.markdown tmpvendorlinks Microsoft Terminal Server when running an application session with the \Start program at logon\ and \Override settings from user profile and Client Connection Manager wizard\ options allows local users to execute arbitrary code by forcing an Explorer error. NOTE: a third-party researcher has stated that the options are \a convenience to users\ and were not intended to restrict execution of arbitrary code.

Reference

http://securityreason.com/securityalert/1486 http://wklpc.blogspot.com/2006/08/easy-ms-terminal-server-desktop-hack.html http://www.securityfocus.com/archive/1/443364/100/200/threaded http://www.securityfocus.com/archive/1/443428/100/200/threaded

Share on: