The SMB signing capability in the Server Message Block (SMB) protocol in Microsoft Windows 2000 and Windows XP allows attackers to disable the digital signing settings in an SMB session to force the data to be sent unsigned, then inject data into the session without detection, e.g. by modifying group policy information sent from a domain controller.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: mitre
Published: 2004-09-01T04:00:00
Updated: 2024-08-08T03:19:28.154Z
Reserved: 2002-11-04T00:00:00
Link: CVE-2002-1256
Vulnrichment
No data.
NVD
Status : Modified
Published: 2002-12-23T05:00:00.000
Modified: 2019-04-30T14:27:13.710
Link: CVE-2002-1256
Redhat
No data.