The component for the Virtual DOS Machine (VDM) subsystem in Windows NT 4.0 and Windows 2000 does not properly validate system structures, which allows local users to access protected kernel memory and execute arbitrary code.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.127
EPSS Ranking 93.6%