Microsoft Windows 2000 Task Manager Process Termination Vulnerability

Windows 2000 is not case sensitive when determing whether or not a process is associated with the OS or not. If a file has the same name as a critical system process, a user will not be able to terminate it. This could allow for a malicious program to run on a system with out the possiblity of it being terminated via Task Manager.

* Conflicting reports exist. It has been reported that it may be possible to terminate the questionable process via Task Manager.


 

Privacy Statement
Copyright 2010, SecurityFocus