cbcvebase.

Microsoft Windows Nt vulnerabilities

201 known vulnerabilities affecting microsoft/windows_nt.

Total CVEs
201
CISA KEV
2
actively exploited
Public exploits
69
Exploited in wild
5
Severity breakdown
CRITICAL26HIGH73MEDIUM82LOW20

Vulnerabilities

Page 8 of 11
CVE-1999-0994P4MEDIUMCVSS 5.0v4.01999-12-16
CVE-1999-0994 [MEDIUM] CWE-255 CVE-1999-0994: Windows NT with SYSKEY reuses the keystream that is used for encrypting SAM password hashes, allowin Windows NT with SYSKEY reuses the keystream that is used for encrypting SAM password hashes, allowing an attacker to crack passwords.
nvd
CVE-2001-0543P4MEDIUMCVSS 5.0v4.02001-09-20
CVE-2001-0543 [MEDIUM] CWE-401 CVE-2001-0543: Memory leak in NNTP service in Windows NT 4.0 and Windows 2000 allows remote attackers to cause a de Memory leak in NNTP service in Windows NT 4.0 and Windows 2000 allows remote attackers to cause a denial of service (memory exhaustion) via a large number of malformed posts.
nvd
CVE-1999-0225P4MEDIUMCVSS 5.0v4.01998-02-14
CVE-1999-0225 [MEDIUM] CVE-1999-0225: Windows NT 4.0 allows remote attackers to cause a denial of service via a malformed SMB logon reques Windows NT 4.0 allows remote attackers to cause a denial of service via a malformed SMB logon request in which the actual data size does not match the specified size.
nvd
CVE-1999-0898P4HIGHCVSS 7.2v4.01999-11-04
CVE-1999-0898 [HIGH] CWE-119 CVE-1999-0898: Buffer overflows in Windows NT 4.0 print spooler allow remote attackers to gain privileges or cause Buffer overflows in Windows NT 4.0 print spooler allow remote attackers to gain privileges or cause a denial of service via a malformed spooler request.
nvd
CVE-1999-1316P4HIGHCVSS 7.5v4.01999-12-31
CVE-1999-1316 [HIGH] CVE-1999-1316: Passfilt.dll in Windows NT SP2 allows users to create a password that contains the user's name, whic Passfilt.dll in Windows NT SP2 allows users to create a password that contains the user's name, which could make it easier for an attacker to guess.
nvd
CVE-1999-1387P4MEDIUMCVSS 5.0v4.01997-04-02
CVE-1999-1387 [MEDIUM] CVE-1999-1387: Windows NT 4.0 SP2 allows remote attackers to cause a denial of service (crash), possibly via malfor Windows NT 4.0 SP2 allows remote attackers to cause a denial of service (crash), possibly via malformed inputs or packets, such as those generated by a Linux smbmount command that was compiled on the Linux 2.0.29 kernel but executed on Linux 2.0.25.
nvd
CVE-2002-0151P4HIGHCVSS 7.2v4.02002-04-04
CVE-2002-0151 [HIGH] CVE-2002-0151: Buffer overflow in Multiple UNC Provider (MUP) in Microsoft Windows operating systems allows local u Buffer overflow in Multiple UNC Provider (MUP) in Microsoft Windows operating systems allows local users to cause a denial of service or possibly gain SYSTEM privileges via a long UNC request.
nvd
CVE-1999-1581P4MEDIUMCVSS 5.0v4.01997-12-23
CVE-1999-1581 [MEDIUM] CVE-1999-1581: Memory leak in Simple Network Management Protocol (SNMP) agent (snmp.exe) for Windows NT 4.0 before Memory leak in Simple Network Management Protocol (SNMP) agent (snmp.exe) for Windows NT 4.0 before Service Pack 4 allows remote attackers to cause a denial of service (memory consumption) via a large number of SNMP packets with Object Identifiers (OIDs) that cannot be decoded.
nvd
CVE-2002-1325P4MEDIUMCVSS 5.0v4.02002-12-23
CVE-2002-1325 [MEDIUM] CVE-2002-1325: Microsoft Virtual Machine (VM) build 5.0.3805 and earlier allows remote attackers to determine a loc Microsoft Virtual Machine (VM) build 5.0.3805 and earlier allows remote attackers to determine a local user's username via a Java applet that accesses the user.dir system property, aka "User.dir Exposure Vulnerability."
nvd
CVE-2001-0016P4HIGHCVSS 7.2≤ 4.02001-03-12
CVE-2001-0016 [HIGH] CVE-2001-0016: NTLM Security Support Provider (NTLMSSP) service does not properly check the function number in an L NTLM Security Support Provider (NTLMSSP) service does not properly check the function number in an LPC request, which could allow local users to gain administrator level access.
nvd
CVE-1999-1157P4MEDIUMCVSS 5.0≤ 4.01999-12-31
CVE-1999-1157 [MEDIUM] CVE-1999-1157: Tcpip.sys in Windows NT 4.0 before SP4 allows remote attackers to cause a denial of service via an I Tcpip.sys in Windows NT 4.0 before SP4 allows remote attackers to cause a denial of service via an ICMP Subnet Mask Address Request packet, when certain multiple IP addresses are bound to the same network interface.
nvd
CVE-2000-0858P4MEDIUMCVSS 5.0v4.02000-11-14
CVE-2000-0858 [MEDIUM] CVE-2000-0858: Vulnerability in Microsoft Windows NT 4.0 allows remote attackers to cause a denial of service in II Vulnerability in Microsoft Windows NT 4.0 allows remote attackers to cause a denial of service in IIS by sending it a series of malformed requests which cause INETINFO.EXE to fail, aka the "Invalid URL" vulnerability.
nvd
CVE-1999-1132P4MEDIUMCVSS 5.0v4.01999-12-31
CVE-1999-1132 [MEDIUM] CVE-1999-1132: Windows NT 4.0 allows remote attackers to cause a denial of service (crash) via extra source routing Windows NT 4.0 allows remote attackers to cause a denial of service (crash) via extra source routing data such as (1) a Routing Information Field (RIF) field with a hop count greater than 7, or (2) a list containing duplicate Token Ring IDs.
nvd
CVE-1999-0815P4MEDIUMCVSS 5.0≤ 4.01999-12-31
CVE-1999-0815 [MEDIUM] CVE-1999-0815: Memory leak in SNMP agent in Windows NT 4.0 before SP5 allows remote attackers to conduct a denial o Memory leak in SNMP agent in Windows NT 4.0 before SP5 allows remote attackers to conduct a denial of service (memory exhaustion) via a large number of queries.
nvd
CVE-2000-0544P4MEDIUMCVSS 5.0v4.02000-06-05
CVE-2000-0544 [MEDIUM] CVE-2000-0544: Windows NT and Windows 2000 hosts allow a remote attacker to cause a denial of service via malformed Windows NT and Windows 2000 hosts allow a remote attacker to cause a denial of service via malformed DCE/RPC SMBwriteX requests that contain an invalid data length.
nvd
CVE-1999-1463P4MEDIUMCVSS 5.0≤ 4.01997-07-10
CVE-1999-1463 [MEDIUM] CVE-1999-1463: Windows NT 4.0 before SP3 allows remote attackers to bypass firewall restrictions or cause a denial Windows NT 4.0 before SP3 allows remote attackers to bypass firewall restrictions or cause a denial of service (crash) by sending improperly fragmented IP packets without the first fragment, which the TCP/IP stack incorrectly reassembles into a valid session.
nvd
CVE-2000-0404P4MEDIUMCVSS 5.0v4.02000-05-25
CVE-2000-0404 [MEDIUM] CVE-2000-0404: The CIFS Computer Browser service allows remote attackers to cause a denial of service by sending a The CIFS Computer Browser service allows remote attackers to cause a denial of service by sending a ResetBrowser frame to the Master Browser, aka the "ResetBrowser Frame" vulnerability.
nvd
CVE-2002-1258P4MEDIUMCVSS 5.0v4.02002-12-23
CVE-2002-1258 [MEDIUM] CVE-2002-1258: Two vulnerabilities in Microsoft Virtual Machine (VM) up to and including build 5.0.3805, as used in Two vulnerabilities in Microsoft Virtual Machine (VM) up to and including build 5.0.3805, as used in Internet Explorer and other applications, allow remote attackers to read files via a Java applet with a spoofed location in the CODEBASE parameter in the APPLET tag, possibly due to a parsing error.
nvd
CVE-1999-0344P4HIGHCVSS 7.2v3.5.1v4.01998-08-01
CVE-1999-0344 [HIGH] CWE-264 CVE-1999-0344: NT users can gain debug-level access on a system process using the Sechole exploit. NT users can gain debug-level access on a system process using the Sechole exploit.
nvd
CVE-1999-0723P4HIGHCVSS 7.1v4.01999-06-23
CVE-1999-0723 [HIGH] CVE-1999-0723: The Windows NT Client Server Runtime Subsystem (CSRSS) can be subjected to a denial of service when The Windows NT Client Server Runtime Subsystem (CSRSS) can be subjected to a denial of service when all worker threads are waiting for user input.
nvd
Microsoft Windows Nt vulnerabilities | cvebase