[原文]The installation for Windows 2000 does not activate the Administrator password until the system has rebooted, which allows remote attackers to connect to the ADMIN$ share without a password until the reboot occurs.
Currently the SecurityFocus staff are not aware of any vendor supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: firstname.lastname@example.org.
Microsoft Windows Installation ADMIN$ Share Arbitrary Access
Remote / Network Access
Loss of Integrity
Microsoft Windows contains a flaw that may allow a remote attacker to bypass authentication settings. The issue is triggered during the installation routine, which does not activate the Administrator password upon reboot. It is possible that the flaw may allow a remote attacker to arbitrary access the ADMIN$ share without a password, resulting in a loss of confidentiality and/or integrity.
Currently, there are no known upgrades, patches, or workarounds available to correct this issue.