Unrated severityNVD Advisory· Published Dec 31, 2003· Updated Apr 16, 2026
CVE-2003-1246
CVE-2003-1246
Description
NtCreateSymbolicLinkObject in ntdll.dll in Integrity Protection Driver (IPD) 1.2 and 1.3 allows local users to create and overwrite arbitrary files via a symlink attack on \winnt\system32\drivers using the subst command.
Affected products
2cpe:2.3:a:pedestal_software:integrity_protection_driver:1.2:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:pedestal_software:integrity_protection_driver:1.2:*:*:*:*:*:*:*
- cpe:2.3:a:pedestal_software:integrity_protection_driver:1.3:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
4- archives.neohapsis.com/archives/bugtraq/2003-01/0017.htmlnvdPatchVendor Advisory
- archives.neohapsis.com/archives/bugtraq/2003-01/0018.htmlnvdPatchVendor Advisory
- www.iss.net/security_center/static/10979.phpnvdPatch
- www.securityfocus.com/bid/6511nvdPatch
News mentions
0No linked articles in our index yet.