Vulnerabilities
Vulnerable Software
Microsoft:  >> Windows Nt  >> 4.0  Security Vulnerabilities
A Windows NT system does not clear the system page file during shutdown, which might allow sensitive information to be recorded.
CVSS Score
2.1
EPSS Score
0.008
Published
2000-01-20
NtImpersonateClientOfPort local procedure call in Windows NT 4.0 allows local users to gain privileges, aka "Spoofed LPC Port Request."
CVSS Score
7.2
EPSS Score
0.027
Published
2000-01-12
Memory leak in SNMP agent in Windows NT 4.0 before SP5 allows remote attackers to conduct a denial of service (memory exhaustion) via a large number of queries.
CVSS Score
5.0
EPSS Score
0.171
Published
1999-12-31
The "AEDebug" registry key is installed with insecure permissions, which allows local users to modify the key to specify a Trojan Horse debugger which is automatically executed on a system crash.
CVSS Score
4.6
EPSS Score
0.006
Published
1999-12-31
Windows NT 4.0 does not properly shut down invalid named pipe RPC connections, which allows remote attackers to cause a denial of service (resource exhaustion) via a series of connections containing malformed data, aka the "Named Pipes Over RPC" vulnerability.
CVSS Score
7.5
EPSS Score
0.3
Published
1999-12-31
Windows NT 4.0 allows remote attackers to cause a denial of service (crash) via extra source routing data such as (1) a Routing Information Field (RIF) field with a hop count greater than 7, or (2) a list containing duplicate Token Ring IDs.
CVSS Score
5.0
EPSS Score
0.195
Published
1999-12-31
Tcpip.sys in Windows NT 4.0 before SP4 allows remote attackers to cause a denial of service via an ICMP Subnet Mask Address Request packet, when certain multiple IP addresses are bound to the same network interface.
CVSS Score
5.0
EPSS Score
0.148
Published
1999-12-31
Netbt.sys in Windows NT 4.0 allows remote malicious DNS servers to cause a denial of service (crash) by returning 0.0.0.0 as the IP address for a DNS host name lookup.
CVSS Score
5.0
EPSS Score
0.098
Published
1999-12-31
Passfilt.dll in Windows NT SP2 allows users to create a password that contains the user's name, which could make it easier for an attacker to guess.
CVSS Score
7.5
EPSS Score
0.07
Published
1999-12-31
Windows NT 4.0 SP4 and earlier allows local users to gain privileges by modifying the symbolic link table in the \?? object folder using a different case letter (upper or lower) to point to a different device.
CVSS Score
4.6
EPSS Score
0.011
Published
1999-12-31


Contact Us

Shodan ® - All rights reserved