Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2004-2730


Sysinternals PsTools before 2.05, including (1) PsExec before 1.54, (2) PsGetsid before 1.41, (3) PsInfo before 1.61, (4) PsKill before 1.03, (5) PsList before 1.26, (6) PsLoglist before 2.51, (7) PsPasswd before 1.21, (8) PsService before 2.12, (9) PsSuspend before 1.05, and (10) PsShutdown before 2.32, does not properly disconnect from remote IPC$ and ADMIN$ shares, which allows local users to access the shares with elevated privileges by using the existing share mapping.


Published

2004-12-31T05:00:00.000

Last Modified

2025-04-03T01:03:51.193

Status

Deferred

Source

[email protected]

Severity

CVSSv2: 4.6 (MEDIUM)

CVSSv2 Vector

AV:L/AC:L/Au:N/C:P/I:P/A:P

  • Access Vector: LOCAL
  • Access Complexity: LOW
  • Authentication: NONE
  • Confidentiality Impact: PARTIAL
  • Integrity Impact: PARTIAL
  • Availability Impact: PARTIAL
Exploitability Score

3.9

Impact Score

6.4

Weaknesses
  • Type: Primary
    CWE-264

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Application microsoft psexec ≤ 1.53 Yes
Application microsoft psgetsid ≤ 1.40 Yes
Application microsoft psinfo ≤ 1.60 Yes
Application microsoft pskill ≤ 1.02 Yes
Application microsoft pslist ≤ 1.25 Yes
Application microsoft psloglist ≤ 2.50 Yes
Application microsoft pspasswd ≤ 1.20 Yes
Application microsoft psservice ≤ 2.11 Yes
Application microsoft psshutdown ≤ 2.31 Yes
Application microsoft pssuspend ≤ 1.04 Yes
Application microsoft sysinternals_pstools ≤ 2.04 Yes

References