DATE:  
COMMAND                                            SOURCE: 
                                                   AUTHOR: 
  registrey


SYSTEMS AFFECTED

  Win NT 3.5, 3.51, 4.0

  

PROBLEM


    This text was found on ex Bill Stout's pages about NT security.



    Files with  '.reg' extention  automatically write  to the registry

    with current user privileges on open.



    This  is  a  default  action  for  '.reg'  with File Explorer, the

    registry by  default allows  the group  'Everyone' access  to many

    parts of the registry.





EXPLOIT

  

SOLUTION


    Change permission and check for group 'Everyone'.  If not  needed,

    change default permissions for user to prevent this security hole.