Page 17 of 317 results (0.008 seconds)

CVSS: 7.5EPSS: 18%CPEs: 1EXPL: 0

30 Oct 2001 — RPC endpoint mapper in Windows NT 4.0 allows remote attackers to cause a denial of service (loss of RPC services) via a malformed request. • http://www.ciac.org/ciac/bulletins/l-142.shtml •

CVSS: 7.5EPSS: 8%CPEs: 3EXPL: 0

20 Sep 2001 — Memory leak in NNTP service in Windows NT 4.0 and Windows 2000 allows remote attackers to cause a denial of service (memory exhaustion) via a large number of malformed posts. • http://www.securityfocus.com/bid/3183 • CWE-401: Missing Release of Memory after Effective Lifetime •

CVSS: 7.5EPSS: 5%CPEs: 2EXPL: 0

31 Aug 2001 — By default, DNS servers on Windows NT 4.0 and Windows 2000 Server cache glue records received from non-delegated name servers, which allows remote attackers to poison the DNS cache via spoofed DNS responses. • http://support.microsoft.com/default.aspx?scid=KB%3Ben-us%3Bq241352 • CWE-346: Origin Validation Error •

CVSS: 5.0EPSS: 20%CPEs: 7EXPL: 1

31 Aug 2001 — Windows NT allows remote attackers to list all users in a domain by obtaining the domain SID with the LsaQueryInformationPolicy policy function via a null session and using the SID to list the users. • http://www.securityfocus.com/archive/1/44430 •

CVSS: 7.5EPSS: 13%CPEs: 9EXPL: 0

29 Aug 2001 — Vulnerabilities in RPC servers in (1) Microsoft Exchange Server 2000 and earlier, (2) Microsoft SQL Server 2000 and earlier, (3) Windows NT 4.0, and (4) Windows 2000 allow remote attackers to cause a denial of service via malformed inputs. • https://docs.microsoft.com/en-us/security-updates/securitybulletins/2001/ms01-041 • CWE-20: Improper Input Validation •

CVSS: 5.5EPSS: 0%CPEs: 8EXPL: 3

03 Aug 2001 — Windows NT 4.0 SP 6a allows a local user with write access to winnt/system32 to cause a denial of service (crash in lsass.exe) by running the NT4ALL exploit program in 'SPECIAL' mode. • https://www.exploit-db.com/exploits/21047 •

CVSS: 5.5EPSS: 0%CPEs: 11EXPL: 1

27 Jul 2001 — Windows 2000 and Windows NT allows local users to cause a denial of service (reboot) by executing a command at the command prompt and pressing the F7 and enter keys several times while the command is executing, possibly related to an exception handling error in csrss.exe. • http://marc.info/?l=bugtraq&m=99640583014377&w=2 •

CVSS: 9.8EPSS: 26%CPEs: 35EXPL: 3

21 Jul 2001 — Buffer overflow in Microsoft Visual Studio RAD Support sub-component of FrontPage Server Extensions allows remote attackers to execute arbitrary commands via a long registration request (URL) to fp30reg.dll. El desbordamiento de búfer en el subcomponente Microsoft Visual Studio RAD Support de FrontPage Server Extensions permite a los atacantes remotos ejecutar comandos arbitrarios a través de una solicitud de registro larga (URL) a fp30reg.dll. • https://www.exploit-db.com/exploits/20950 •

CVSS: 7.5EPSS: 10%CPEs: 29EXPL: 2

07 Jul 2001 — Multiple TCP implementations could allow remote attackers to cause a denial of service (bandwidth and CPU exhaustion) by setting the maximum segment size (MSS) to a very small number and requesting large amounts of data, which generates more packets with less TCP-level data that amplify network traffic and consume more server CPU to process. • https://www.exploit-db.com/exploits/20997 •

CVSS: 7.5EPSS: 5%CPEs: 6EXPL: 0

02 Jul 2001 — Microsoft Data Access Component Internet Publishing Provider 8.103.2519.0 and earlier allows remote attackers to bypass Security Zone restrictions via WebDAV requests. • http://www.ciac.org/ciac/bulletins/l-074.shtml •