Page 18 of 317 results (0.005 seconds)

CVSS: 5.5EPSS: 1%CPEs: 2EXPL: 0

18 Jun 2001 — The default configuration of the Dr. Watson program in Windows NT and Windows 2000 generates user.dmp crash dump files with world-readable permissions, which could allow a local user to gain access to sensitive information. • http://archives.neohapsis.com/archives/bugtraq/2001-03/0336.html •

CVSS: 7.8EPSS: 0%CPEs: 1EXPL: 1

04 Apr 2001 — Format string vulnerability in DbgPrint function, used in debug messages for some Windows NT drivers (possibly when called through DebugMessage), may allow local users to gain privileges. • http://archives.neohapsis.com/archives/bugtraq/2001-02/0379.html •

CVSS: 7.8EPSS: 1%CPEs: 1EXPL: 0

12 Mar 2001 — NTLM Security Support Provider (NTLMSSP) service does not properly check the function number in an LPC request, which could allow local users to gain administrator level access. • http://razor.bindview.com/publish/advisories/adv_NTLMSSP.html •

CVSS: 7.5EPSS: 19%CPEs: 1EXPL: 0

12 Mar 2001 — Memory leak in PPTP server in Windows NT 4.0 allows remote attackers to cause a denial of service via a malformed data packet, aka the "Malformed PPTP Packet Stream" vulnerability. • http://www.securityfocus.com/bid/2368 •

CVSS: 8.8EPSS: 16%CPEs: 4EXPL: 0

12 Feb 2001 — Web Extender Client (WEC) in Microsoft Office 2000, Windows 2000, and Windows Me does not properly process Internet Explorer security settings for NTLM authentication, which allows attackers to obtain NTLM credentials and possibly obtain the password, aka the "Web Client NTLM Authentication" vulnerability. • http://www.securityfocus.com/bid/2199 •

CVSS: 7.1EPSS: 0%CPEs: 1EXPL: 1

12 Feb 2001 — The Winsock2ProtocolCatalogMutex mutex in Windows NT 4.0 has inappropriate Everyone/Full Control permissions, which allows local users to modify the permissions to "No Access" and disable Winsock network connectivity to cause a denial of service, aka the "Winsock Mutex" vulnerability. • https://www.exploit-db.com/exploits/20596 • CWE-732: Incorrect Permission Assignment for Critical Resource •

CVSS: 10.0EPSS: 1%CPEs: 2EXPL: 1

02 Feb 2001 — The default permissions for the RAS Administration key in Windows NT 4.0 allows local users to execute arbitrary commands by changing the value to point to a malicious DLL, aka one of the "Registry Permissions" vulnerabilities. • http://www.securityfocus.com/bid/2064 •

CVSS: 8.1EPSS: 0%CPEs: 2EXPL: 0

02 Feb 2001 — The default permissions for the SNMP Parameters registry key in Windows NT 4.0 allows remote attackers to read and possibly modify the SNMP community strings to obtain sensitive information or modify network configuration, aka one of the "Registry Permissions" vulnerabilities. • http://www.securityfocus.com/bid/2066 •

CVSS: 7.8EPSS: 1%CPEs: 2EXPL: 0

02 Feb 2001 — The default permissions for the MTS Package Administration registry key in Windows NT 4.0 allows local users to install or modify arbitrary Microsoft Transaction Server (MTS) packages and gain privileges, aka one of the "Registry Permissions" vulnerabilities. • http://www.securityfocus.com/bid/2065 •

CVSS: 10.0EPSS: 80%CPEs: 2EXPL: 4

09 Jan 2001 — Buffer overflow in Microsoft Phone Book Service allows local users to execute arbitrary commands, aka the "Phone Book Service Buffer Overflow" vulnerability. • https://www.exploit-db.com/exploits/16357 •