CVE-2007-2229

Description

Microsoft Windows Vista uses insecure default permissions for unspecified local user information data stores in the registry and the file system, which allows local users to obtain sensitive information such as administrative passwords, aka Permissive User Information Store ACLs Information Disclosure Vulnerability.

Risk Information

Base Score
5.5
MODERATE
Vector
AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
EPSS Score
Exploitation Probability
0.862

Associated Vulnerability

VulnerabilityOS Platform
Security Update for Windows Vista (KB931213)Windows
Security Update for Windows Vista for x64-based Systems (KB931213)Windows

Patch Details

No records found

References

https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234