Microsoft Windows Nt vulnerabilities
201 known vulnerabilities affecting microsoft/windows_nt.
Total CVEs
201
CISA KEV
2
actively exploited
Public exploits
67
Exploited in wild
2
Severity breakdown
CRITICAL26HIGH73MEDIUM82LOW20
Vulnerabilities
Page 7 of 11
CVE-2000-0544MEDIUMCVSS 5.0v4.02000-06-05
CVE-2000-0544 [MEDIUM] CVE-2000-0544: Windows NT and Windows 2000 hosts allow a remote attacker to cause a denial of service via malformed
Windows NT and Windows 2000 hosts allow a remote attacker to cause a denial of service via malformed DCE/RPC SMBwriteX requests that contain an invalid data length.
nvd
CVE-1999-0590CRITICALCVSS 10.0v3.5.1v4.02000-06-01
CVE-1999-0590 [CRITICAL] CVE-1999-0590: A system does not present an appropriate legal message or warning to a user who is accessing it.
A system does not present an appropriate legal message or warning to a user who is accessing it.
nvd
CVE-2000-0404MEDIUMCVSS 5.0v4.02000-05-25
CVE-2000-0404 [MEDIUM] CVE-2000-0404: The CIFS Computer Browser service allows remote attackers to cause a denial of service by sending a
The CIFS Computer Browser service allows remote attackers to cause a denial of service by sending a ResetBrowser frame to the Master Browser, aka the "ResetBrowser Frame" vulnerability.
nvd
CVE-2000-0403MEDIUMCVSS 5.0v4.02000-05-25
CVE-2000-0403 [MEDIUM] CVE-2000-0403: The CIFS Computer Browser service on Windows NT 4.0 allows a remote attacker to cause a denial of se
The CIFS Computer Browser service on Windows NT 4.0 allows a remote attacker to cause a denial of service by sending a large number of host announcement requests to the master browse tables, aka the "HostAnnouncement Flooding" or "HostAnnouncement Frame" vulnerability.
nvd
CVE-2000-0305HIGHCVSS 7.8PoCv4.02000-05-19
CVE-2000-0305 [HIGH] CWE-399 CVE-2000-0305: Windows 95, Windows 98, Windows 2000, Windows NT 4.0, and Terminal Server systems allow a remote att
Windows 95, Windows 98, Windows 2000, Windows NT 4.0, and Terminal Server systems allow a remote attacker to cause a denial of service by sending a large number of identical fragmented IP packets, aka jolt2 or the "IP Fragment Reassembly" vulnerability.
nvd
CVE-1999-0980MEDIUMCVSS 5.0PoCv4.02000-05-16
CVE-1999-0980 [MEDIUM] CVE-1999-0980: Windows NT Service Control Manager (SCM) allows remote attackers to cause a denial of service via a
Windows NT Service Control Manager (SCM) allows remote attackers to cause a denial of service via a malformed argument in a resource enumeration request.
nvd
CVE-2000-0331MEDIUMCVSS 5.0v4.02000-04-20
CVE-2000-0331 [MEDIUM] CVE-2000-0331: Buffer overflow in Microsoft command processor (CMD.EXE) for Windows NT and Windows 2000 allows a lo
Buffer overflow in Microsoft command processor (CMD.EXE) for Windows NT and Windows 2000 allows a local user to cause a denial of service via a long environment variable, aka the "Malformed Environment Variable" vulnerability.
nvd
CVE-2000-0256HIGHCVSS 7.5PoCv4.02000-04-19
CVE-2000-0256 [HIGH] CVE-2000-0256: Buffer overflows in htimage.exe and Imagemap.exe in FrontPage 97 and 98 Server Extensions allow a us
Buffer overflows in htimage.exe and Imagemap.exe in FrontPage 97 and 98 Server Extensions allow a user to conduct activities that are not otherwise available through the web site, aka the "Server-Side Image Map Components" vulnerability.
nvd
CVE-2000-1218CRITICALCVSS 9.8v4.02000-04-14
CVE-2000-1218 [CRITICAL] CWE-346 CVE-2000-1218: The default configuration for the domain name resolver for Microsoft Windows 98, NT 4.0, 2000, and X
The default configuration for the domain name resolver for Microsoft Windows 98, NT 4.0, 2000, and XP sets the QueryIpMatching parameter to 0, which causes Windows to accept DNS updates from hosts that it did not query, which allows remote attackers to poison the DNS cache.
nvd
CVE-2000-0259HIGHCVSS 7.2v4.02000-04-12
CVE-2000-0259 [HIGH] CVE-2000-0259: The default permissions for the Cryptography\Offload registry key used by the OffloadModExpo in Wind
The default permissions for the Cryptography\Offload registry key used by the OffloadModExpo in Windows NT 4.0 allows local users to obtain compromise the cryptographic keys of other users.
nvd
CVE-1999-0701HIGHCVSS 7.2v4.02000-04-11
CVE-1999-0701 [HIGH] CWE-16 CVE-1999-0701: After an unattended installation of Windows NT 4.0, an installation file could include sensitive inf
After an unattended installation of Windows NT 4.0, an installation file could include sensitive information such as the local Administrator password.
nvd
CVE-2000-0232LOWCVSS 2.1PoCv4.02000-03-30
CVE-2000-0232 [LOW] CVE-2000-0232: Microsoft TCP/IP Printing Services, aka Print Services for Unix, allows an attacker to cause a denia
Microsoft TCP/IP Printing Services, aka Print Services for Unix, allows an attacker to cause a denial of service via a malformed TCP/IP print request.
nvd
CVE-2000-0155HIGHCVSS 7.2PoCv4.02000-02-18
CVE-2000-0155 [HIGH] CWE-94 CVE-2000-0155: Windows NT Autorun executes the autorun.inf file on non-removable media, which allows local attacker
Windows NT Autorun executes the autorun.inf file on non-removable media, which allows local attackers to specify an alternate program to execute when other users access a drive.
nvd
CVE-2000-0197MEDIUMCVSS 4.6v4.02000-02-14
CVE-2000-0197 [MEDIUM] CVE-2000-0197: The Windows NT scheduler uses the drive mapping of the interactive user who is currently logged onto
The Windows NT scheduler uses the drive mapping of the interactive user who is currently logged onto the system, which allows the local user to gain privileges by providing a Trojan horse batch file in place of the original batch file.
nvd
CVE-2000-0129LOWCVSS 2.1PoCv4.02000-02-04
CVE-2000-0129 [LOW] CVE-2000-0129: Buffer overflow in the SHGetPathFromIDList function of the Serv-U FTP server allows attackers to cau
Buffer overflow in the SHGetPathFromIDList function of the Serv-U FTP server allows attackers to cause a denial of service by performing a LIST command on a malformed .lnk file.
nvd
CVE-2000-0089LOWCVSS 2.1v4.02000-02-04
CVE-2000-0089 [LOW] CVE-2000-0089: The rdisk utility in Microsoft Terminal Server Edition and Windows NT 4.0 stores registry hive infor
The rdisk utility in Microsoft Terminal Server Edition and Windows NT 4.0 stores registry hive information in a temporary file with permissions that allow local users to read it, aka the "RDISK Registry Enumeration File" vulnerability.
nvd
CVE-2000-0121LOWCVSS 3.6PoCv4.02000-02-01
CVE-2000-0121 [LOW] CVE-2000-0121: The Recycle Bin utility in Windows NT and Windows 2000 allows local users to read or modify files by
The Recycle Bin utility in Windows NT and Windows 2000 allows local users to read or modify files by creating a subdirectory with the victim's SID in the recycler directory, aka the "Recycle Bin Creation" vulnerability.
nvd
CVE-1999-0595LOWCVSS 2.1v3.5.1v4.02000-01-20
CVE-1999-0595 [LOW] CVE-1999-0595: A Windows NT system does not clear the system page file during shutdown, which might allow sensitive
A Windows NT system does not clear the system page file during shutdown, which might allow sensitive information to be recorded.
nvd
CVE-2000-0070HIGHCVSS 7.2v4.02000-01-12
CVE-2000-0070 [HIGH] CVE-2000-0070: NtImpersonateClientOfPort local procedure call in Windows NT 4.0 allows local users to gain privileg
NtImpersonateClientOfPort local procedure call in Windows NT 4.0 allows local users to gain privileges, aka "Spoofed LPC Port Request."
nvd
CVE-1999-1455HIGHCVSS 7.5≤ 4.01999-12-31
CVE-1999-1455 [HIGH] CVE-1999-1455: RSH service utility RSHSVC in Windows NT 3.5 through 4.0 does not properly restrict access as specif
RSH service utility RSHSVC in Windows NT 3.5 through 4.0 does not properly restrict access as specified in the .Rhosts file when a user comes from an authorized host, which could allow unauthorized users to access the service by logging in from an authorized host.
nvd