Lucene search

K
cve[email protected]CVE-2002-0034
HistoryOct 03, 2022 - 4:23 p.m.

CVE-2002-0034

2022-10-0316:23:50
web.nvd.nist.gov
28
cve-2002-0034
microsoft
convert.exe
windows 2000
windows xp
ntfs
fat32
insecure permissions
nvd

4.6 Medium

CVSS2

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:L/AC:L/Au:N/C:P/I:P/A:P

6.5 Medium

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

25.9%

The Microsoft CONVERT.EXE program, when used on Windows 2000 and Windows XP systems, does not apply the default NTFS permissions when converting a FAT32 file system, which could cause the conversion to produce a file system with less secure permissions than expected.

Affected configurations

NVD
Node
microsoftwindows_2000
OR
microsoftwindows_xpgoldprofessional

4.6 Medium

CVSS2

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:L/AC:L/Au:N/C:P/I:P/A:P

6.5 Medium

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

25.9%

Related for CVE-2002-0034