Title: A major vulnerability discovered in Microsoft Windows 2000 !!!!!!!!
A major vulnerability discovered in Microsoft Windows 2000
At the logon screen, move the cursor to the username input box and press Ctrl+Shift on the keyboard. At this time, under the default
installation state, the input method status bar will appear. Move the mouse to the input method status bar and right-click it. In the dialog box that appears,
choose Help, then choose Operating Guide or Input Method Introduction
(Microsoft's Pinyin input method and Intelligent ABC do not have this option).
In the Operating Guide or Input Method Introduction window that appears, there will be several buttons, and the key one is the Options button. If it is
a Windows 2000 system without Service Pack 1 or IE5.5 installed, left-click the Options button, and in the dialog box that appears
choose Home Page. At this time, on the right side of the already opened help window, the IE browser "This page cannot be displayed" page will appear,
and there is a link there for checking network settings. Clicking it will bring up the network settings options,
and you can make any changes to network settings or even the Control Panel. Left-click the Options button, and in the dialog box that appears choose
Internet Options; you can also make any changes to the home page, connections, security, advanced options, etc.
Most seriously, if you right-click the Options button, a dialog box will appear. Choose Jump to URL, and then another dialog box will appear,
with an input box for Jump to this URL. Enter any path you want to see, for example c:\ . Then, on the right side of the already opened he
lp window, the Explorer interface for drive C will appear. At this time you already have system administrator privileges and can perform any operation on the data you see.
That means you have bypassed Windows 2000's logon verification mechanism!
If Service Pack 1 or IE5.5 is installed on the Windows 2000 system, the network settings options cannot be executed,
but Internet Options can still be executed. The Explorer interface can still appear. Through path input,
files in all folders and files under the root directory can still be seen, but they can no longer be operated on directly. However, we can still
right-click folders and files and choose Delete, Permanent Delete (hold Shift),
Rename, Send to floppy, and other operations, and can even format the disk!
Or right-click a blank area and choose Web or Thumbnail
view mode, which will leak some files that can be displayed.
Also, we can right-click the drive letter at the upper left corner of the Explorer interface, or any folder, or view any file. In the dialog box for drive letters and folders,
choose Sharing; in the dialog box for a single file, choose Properties. You can arbitrarily add sharing permissions,
for example Everyone, and you can choose the Full Control option. Then as long as this machine is on the network, you can still
log in remotely through the network and fully control all data and materials! That is to say, whether through remote network login
or by physical access to a computer running Windows 2000, we can control everything!
This vulnerability exists in all Windows 2000 systems that have multiple input methods. After such abnormal operations,
after normal login there will also randomly appear various program runtime errors. The temporary solution is:
in Control Panel choose the input method regional option under Regional Options, check the checkbox to enable the indicator on the taskbar,
keep only the one input method you are best at and delete all the rest,
and the internal encoding input method must be deleted! Because the method described below is ineffective against the internal encoding input method.
Then on the taskbar left-click the pen-shaped icon of the input method icon and choose to close the input method status.
--
ko20010214
=================================
大功告成,打个Kiss!
ko20010214@MSN.com
神州优雅Q300C
Intel CeleronM 370处理器 | 256MbDDR内存
40G硬盘 | USB2.0 | IEEE 1394
13.3 ' WXGA 宽屏(16:10) | COMBO光驱
10/100M网卡 | 四合一读卡器