Page 11 of 214 results (0.019 seconds)

CVSS: 8.4EPSS: 33%CPEs: 6EXPL: 0

18 Feb 2002 — Buffer overflow in SNMP agent service in Windows 95/98/98SE, Windows NT 4.0, Windows 2000, and Windows XP allows remote attackers to cause a denial of service or execute arbitrary code via a malformed management request. NOTE: this candidate may be split or merged with other candidates. This and other PROTOS-related candidates, especially CVE-2002-0012 and CVE-2002-0013, will be updated when more accurate information is available. Desbordamiento de buffer en el agente del servicio SNMP en Windows 95/98/98SE... • http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2002-0012 • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •

CVSS: 7.5EPSS: 23%CPEs: 2EXPL: 1

06 Dec 2001 — Terminal Server in Windows NT and Windows 2000 allows remote attackers to cause a denial of service via a sequence of invalid Remote Desktop Protocol (RDP) packets. • https://www.exploit-db.com/exploits/21123 •

CVSS: 7.5EPSS: 18%CPEs: 1EXPL: 0

30 Oct 2001 — RPC endpoint mapper in Windows NT 4.0 allows remote attackers to cause a denial of service (loss of RPC services) via a malformed request. • http://www.ciac.org/ciac/bulletins/l-142.shtml •

CVSS: 7.5EPSS: 8%CPEs: 3EXPL: 0

20 Sep 2001 — Memory leak in NNTP service in Windows NT 4.0 and Windows 2000 allows remote attackers to cause a denial of service (memory exhaustion) via a large number of malformed posts. • http://www.securityfocus.com/bid/3183 • CWE-401: Missing Release of Memory after Effective Lifetime •

CVSS: 7.5EPSS: 5%CPEs: 2EXPL: 0

31 Aug 2001 — By default, DNS servers on Windows NT 4.0 and Windows 2000 Server cache glue records received from non-delegated name servers, which allows remote attackers to poison the DNS cache via spoofed DNS responses. • http://support.microsoft.com/default.aspx?scid=KB%3Ben-us%3Bq241352 • CWE-346: Origin Validation Error •

CVSS: 5.0EPSS: 20%CPEs: 7EXPL: 1

31 Aug 2001 — Windows NT allows remote attackers to list all users in a domain by obtaining the domain SID with the LsaQueryInformationPolicy policy function via a null session and using the SID to list the users. • http://www.securityfocus.com/archive/1/44430 •

CVSS: 7.5EPSS: 13%CPEs: 9EXPL: 0

29 Aug 2001 — Vulnerabilities in RPC servers in (1) Microsoft Exchange Server 2000 and earlier, (2) Microsoft SQL Server 2000 and earlier, (3) Windows NT 4.0, and (4) Windows 2000 allow remote attackers to cause a denial of service via malformed inputs. • https://docs.microsoft.com/en-us/security-updates/securitybulletins/2001/ms01-041 • CWE-20: Improper Input Validation •

CVSS: 5.5EPSS: 0%CPEs: 8EXPL: 3

03 Aug 2001 — Windows NT 4.0 SP 6a allows a local user with write access to winnt/system32 to cause a denial of service (crash in lsass.exe) by running the NT4ALL exploit program in 'SPECIAL' mode. • https://www.exploit-db.com/exploits/21047 •

CVSS: 5.5EPSS: 0%CPEs: 11EXPL: 1

27 Jul 2001 — Windows 2000 and Windows NT allows local users to cause a denial of service (reboot) by executing a command at the command prompt and pressing the F7 and enter keys several times while the command is executing, possibly related to an exception handling error in csrss.exe. • http://marc.info/?l=bugtraq&m=99640583014377&w=2 •

CVSS: 9.8EPSS: 25%CPEs: 35EXPL: 3

21 Jul 2001 — Buffer overflow in Microsoft Visual Studio RAD Support sub-component of FrontPage Server Extensions allows remote attackers to execute arbitrary commands via a long registration request (URL) to fp30reg.dll. El desbordamiento de búfer en el subcomponente Microsoft Visual Studio RAD Support de FrontPage Server Extensions permite a los atacantes remotos ejecutar comandos arbitrarios a través de una solicitud de registro larga (URL) a fp30reg.dll. • https://www.exploit-db.com/exploits/20950 •