CVE-2000-0663Microsoft Windows NT vulnerability

4 documents4 sources
Severity
4.6MEDIUMNVD
EPSS
0.9%
top 24.06%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedJul 25
Latest updateApr 30

Description

The registry entry for the Windows Shell executable (Explorer.exe) in Windows NT and Windows 2000 uses a relative path name, which allows local users to execute arbitrary commands by inserting a Trojan Horse named Explorer.exe into the %Systemdrive% directory, aka the "Relative Shell Path" vulnerability.

CVSS vector

AV:L/AC:L/C:P/I:P/A:PExploitability: 3.9 | Impact: 6.4

Affected Packages1 packages

Patches

🔴Vulnerability Details

2
GHSA
GHSA-527c-22g3-c82g: The registry entry for the Windows Shell executable (Explorer2022-04-30
CVEList
CVE-2000-0663: The registry entry for the Windows Shell executable (Explorer2000-10-13

💥Exploits & PoCs

1
Exploit-DB
Microsoft Windows NT/2000 - Terminal Server Service RDP Denial of Service2001-10-18
CVE-2000-0663 — Microsoft Windows NT vulnerability | cvebase