CNCVE编号:CNCVE-20010003 CVE编号:CVE-2001-0003 安全级别:中 漏洞中文描述: Microsoft Office2000、Windows 2000和Windows Me中的网络添加客户端(WEC,Web Extender Client)不能正确的为NTLM认证处理IE安全设置,这导致攻击者可以获得NTLM信任证书并有可能获得口令。 漏洞英文描述: Web Extender Client (WEC) in Microsoft Office 2000, Windows 2000, and Windows Me does not properly process Internet Explorer security settings for NTLM authentication, which allows attackers to obtain NTLM credentials and possibly obtain the password. 漏洞参考: MS:MS01-001 系统类型: Unix/Linux Win95/98/ME Win2000/NT 漏洞类型:权限有效性检查错误