积极预防 及时发现
快速响应 力保恢复
Windows 2000 简体中文版中的输入法编辑器(IME,Input Method Editor...
发布时间:2000-12-19 信息来源:管理员

CNCVE编号:CNCVE-20000933 CVE编号:CVE-2000-0933 安全级别:中 漏洞中文描述: Windows 2000 简体中文版中的输入法编辑器(IME,Input Method Editor)允许对本应该被禁止访问的特权功能进行访问,这些功能导致本地用户可以获得特权。 漏洞英文描述: The Input Method Editor (IME) in the Simplified Chinese version of Windows 2000 does not disable access to privileged functionality that should normally be restricted, which allows local users to gain privileges, aka the "Simplified Chinese IME State Recongnize vulnerability" 漏洞参考: MS:MS00-069 | URL:http://www.microsoft.com/technet/security/bulletin/ms00-069.asp | BID:1729 | URL:http://www.securityfocus.com/bid/1729 | XF:win2k-simplified-chinese-ime | URL:http://xforce.iss.net/static/5301.php 系统类型: Win2000/NT 漏洞类型:权限有效性检查错误