Page 2 of 20 results (0.015 seconds)

CVSS: 5.5EPSS: 0%CPEs: 2EXPL: 0

31 Dec 1999 — Windows NT 3.51 and 4.0 allow local users to cause a denial of service (crash) by running a program that creates a large number of locks on a file, which exhausts the NonPagedPool. • http://support.microsoft.com/support/kb/articles/q163/1/43.asp •

CVSS: 8.1EPSS: 7%CPEs: 1EXPL: 0

31 Dec 1999 — RSH service utility RSHSVC in Windows NT 3.5 through 4.0 does not properly restrict access as specified in the .Rhosts file when a user comes from an authorized host, which could allow unauthorized users to access the service by logging in from an authorized host. • http://support.microsoft.com/support/kb/articles/q158/3/20.asp •

CVSS: 9.8EPSS: 3%CPEs: 10EXPL: 1

12 Mar 1999 — The screen saver in Windows NT does not verify that its security context has been changed properly, allowing attackers to run programs with elevated privileges. • https://www.exploit-db.com/exploits/19359 •

CVSS: 7.8EPSS: 0%CPEs: 6EXPL: 1

20 Feb 1999 — Local users in Windows NT can obtain administrator privileges by changing the KnownDLLs list to reference malicious programs. • https://www.exploit-db.com/exploits/19198 •

CVSS: 9.8EPSS: 3%CPEs: 13EXPL: 0

05 Jan 1999 — The cryptographic challenge of SMB authentication in Windows 95 and Windows 98 can be reused, allowing an attacker to replay the response and impersonate a user. • https://marc.info/?l=bugtraq&m=91552769809542&w=2 •

CVSS: 9.8EPSS: 0%CPEs: 2EXPL: 0

01 Aug 1998 — NT users can gain debug-level access on a system process using the Sechole exploit. • http://support.microsoft.com/default.aspx?scid=kb%3B%5BLN%5D%3BQ190288 • CWE-264: Permissions, Privileges, and Access Controls •

CVSS: 7.5EPSS: 5%CPEs: 2EXPL: 0

09 May 1998 — Windows NT 3.51 and 4.0 running WINS (Windows Internet Name Service) allows remote attackers to cause a denial of service (resource exhaustion) via a flood of malformed packets, which causes the server to slow down and fill the event logs with error messages. • http://marc.info/?l=bugtraq&m=90221101925891&w=2 •

CVSS: 7.5EPSS: 25%CPEs: 26EXPL: 1

16 Dec 1997 — Teardrop IP denial of service. • https://www.exploit-db.com/exploits/19103 •

CVSS: 7.5EPSS: 4%CPEs: 1EXPL: 1

10 Jul 1997 — Windows NT 4.0 before SP3 allows remote attackers to bypass firewall restrictions or cause a denial of service (crash) by sending improperly fragmented IP packets without the first fragment, which the TCP/IP stack incorrectly reassembles into a valid session. • http://www.securityfocus.com/archive/1/7219 •

CVSS: 8.4EPSS: 6%CPEs: 2EXPL: 0

01 Jan 1997 — Windows NT crashes or locks up when a Samba client executes a "cd .." command on a file share. • http://support.microsoft.com/default.aspx?scid=kb%3B%5BLN%5D%3BQ140818 • CWE-17: DEPRECATED: Code •