Page 22 of 317 results (0.004 seconds)

CVSS: 7.5EPSS: 17%CPEs: 1EXPL: 0

31 Dec 1999 — Memory leak in SNMP agent in Windows NT 4.0 before SP5 allows remote attackers to conduct a denial of service (memory exhaustion) via a large number of queries. • http://support.microsoft.com/support/kb/articles/q196/2/70.asp •

CVSS: 7.5EPSS: 30%CPEs: 4EXPL: 0

31 Dec 1999 — Windows NT 4.0 does not properly shut down invalid named pipe RPC connections, which allows remote attackers to cause a denial of service (resource exhaustion) via a series of connections containing malformed data, aka the "Named Pipes Over RPC" vulnerability. • http://support.microsoft.com/support/kb/articles/Q195/7/33.asp • CWE-772: Missing Release of Resource after Effective Lifetime •

CVSS: 7.5EPSS: 19%CPEs: 1EXPL: 0

31 Dec 1999 — Windows NT 4.0 allows remote attackers to cause a denial of service (crash) via extra source routing data such as (1) a Routing Information Field (RIF) field with a hop count greater than 7, or (2) a list containing duplicate Token Ring IDs. • http://marc.info/?l=bugtraq&m=90763508011966&w=2 •

CVSS: 7.5EPSS: 14%CPEs: 1EXPL: 0

31 Dec 1999 — Tcpip.sys in Windows NT 4.0 before SP4 allows remote attackers to cause a denial of service via an ICMP Subnet Mask Address Request packet, when certain multiple IP addresses are bound to the same network interface. • http://support.microsoft.com/support/kb/articles/Q192/7/74.ASP •

CVSS: 7.5EPSS: 9%CPEs: 2EXPL: 0

31 Dec 1999 — Netbt.sys in Windows NT 4.0 allows remote malicious DNS servers to cause a denial of service (crash) by returning 0.0.0.0 as the IP address for a DNS host name lookup. • http://support.microsoft.com/support/kb/articles/Q188/5/71.ASP •

CVSS: 5.5EPSS: 0%CPEs: 1EXPL: 0

31 Dec 1999 — Office Shortcut Bar (OSB) in Windows 3.51 enables backup and restore permissions, which are inherited by programs such as File Manager that are started from the Shortcut Bar, which could allow local users to read folders for which they do not have permission. • http://support.microsoft.com/support/kb/articles/q146/6/04.asp •

CVSS: 8.8EPSS: 7%CPEs: 1EXPL: 0

31 Dec 1999 — Passfilt.dll in Windows NT SP2 allows users to create a password that contains the user's name, which could make it easier for an attacker to guess. • http://support.microsoft.com/support/kb/articles/Q247/9/75.asp •

CVSS: 7.8EPSS: 1%CPEs: 1EXPL: 0

31 Dec 1999 — Windows NT 4.0 SP4 and earlier allows local users to gain privileges by modifying the symbolic link table in the \?? object folder using a different case letter (upper or lower) to point to a different device. • http://marc.info/?l=ntbugtraq&m=92127046701349&w=2 •

CVSS: 7.1EPSS: 0%CPEs: 2EXPL: 0

31 Dec 1999 — When an administrator in Windows NT or Windows 2000 changes a user policy, the policy is not properly updated if the local ntconfig.pol is not writable by the user, which could allow local users to bypass restrictions that would otherwise be enforced by the policy, possibly by changing the policy file to be read-only. • http://support.microsoft.com/support/kb/articles/q157/6/73.asp •

CVSS: 7.5EPSS: 8%CPEs: 1EXPL: 0

31 Dec 1999 — When the Ntconfig.pol file is used on a server whose name is longer than 13 characters, Windows NT does not properly enforce policies for global groups, which could allow users to bypass restrictions that were intended by those policies. • http://support.microsoft.com/support/kb/articles/q163/8/75.asp •