CVEs (267)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
IIS 4.0 allows local users to bypass the "User cannot change password" policy for Windows NT by directly calling .htr password changing programs in the /iisadmpwd directory, including (1) aexp2.htr, (2) aexp2b.htr, (3) a...Show more |
4Freebsd MicrosoftOpenbsd+1 more7Freebsd OpenbsdSolaris+4 moreApr 16, 2026 Aug 12, 2002 N/A· v4 9.8 CRITICAL· v3 10.0 HIGH· v2 Integer overflow in xdr_array function in RPC servers for operating systems that use libc, glibc, or other code based on SunRPC including dietlibc, allows remote attackers to execute arbitrary code by passing a large num...Show more |
1Microsoft 3Windows 2000 Windows NtWindows XpApr 16, 2026 Jul 3, 2002 N/A· v4 N/A· v3 7.2 HIGH· v2 Buffer overflow in Remote Access Service (RAS) phonebook for Windows NT 4.0, 2000, XP, and Routing and Remote Access Server (RRAS) allows local users to execute arbitrary code by modifying the rasphone.pbk file to use a...Show more |
1Microsoft 2Windows 2000 Windows NtApr 16, 2026 Jun 25, 2002 N/A· v4 7.8 HIGH· v3 7.2 HIGH· v2 smss.exe debugging subsystem in Windows NT and Windows 2000 does not properly authenticate programs that connect to other programs, which allows local users to gain administrator or SYSTEM privileges by duplicating a han...Show more |
1Microsoft 3Windows 2000 Windows NtWindows XpApr 16, 2026 Apr 4, 2002 N/A· v4 N/A· v3 7.2 HIGH· v2 Buffer overflow in Multiple UNC Provider (MUP) in Microsoft Windows operating systems allows local users to cause a denial of service or possibly gain SYSTEM privileges via a long UNC request. |
1Microsoft 4Windows 2000 Windows 98Windows 98se+1 moreApr 16, 2026 Mar 15, 2002 N/A· v4 N/A· v3 7.6 HIGH· v2 Buffer overflow in Windows Shell (used as the Windows Desktop) allows local and possibly remote attackers to execute arbitrary code via a custom URL handler that has not been removed for an application that has been impr...Show more |
1Microsoft 6Windows 2000 Windows 95Windows 98+3 moreApr 16, 2026 Mar 8, 2002 N/A· v4 N/A· v3 7.5 HIGH· v2 Buffer overflow in SNMP agent service in Windows 95/98/98SE, Windows NT 4.0, Windows 2000, and Windows XP allows remote attackers to cause a denial of service or execute arbitrary code via a malformed management request....Show more |
In Microsoft Windows NT and Windows 2000, a trusting domain that receives authorization information from a trusted domain does not verify that the trusted domain is authoritative for all listed SIDs, which allows remote...Show more |
1Microsoft 4Sql Server Windows 2000Windows Nt+1 moreApr 16, 2026 Dec 20, 2001 N/A· v4 N/A· v3 5.0 MEDIUM· v2 Format string vulnerability in the C runtime functions in SQL Server 7.0 and 2000 allows attackers to cause a denial of service. |
Terminal Server in Windows NT and Windows 2000 allows remote attackers to cause a denial of service via a sequence of invalid Remote Desktop Protocol (RDP) packets. |
RPC endpoint mapper in Windows NT 4.0 allows remote attackers to cause a denial of service (loss of RPC services) via a malformed request. |
1Microsoft 3Exchange Server Windows 2000Windows NtApr 16, 2026 Sep 20, 2001 N/A· v4 N/A· v3 5.0 MEDIUM· v2 Memory leak in NNTP service in Windows NT 4.0 and Windows 2000 allows remote attackers to cause a denial of service (memory exhaustion) via a large number of malformed posts. |
1Microsoft 4Exchange Server Sql ServerWindows 2000+1 moreApr 16, 2026 Sep 20, 2001 N/A· v4 N/A· v3 5.0 MEDIUM· v2 Vulnerabilities in RPC servers in (1) Microsoft Exchange Server 2000 and earlier, (2) Microsoft SQL Server 2000 and earlier, (3) Windows NT 4.0, and (4) Windows 2000 allow remote attackers to cause a denial of service vi...Show more |
1Microsoft 2Windows 2000 Windows NtApr 16, 2026 Aug 31, 2001 N/A· v4 7.5 HIGH· v3 5.0 MEDIUM· v2 By default, DNS servers on Windows NT 4.0 and Windows 2000 Server cache glue records received from non-delegated name servers, which allows remote attackers to poison the DNS cache via spoofed DNS responses. |
Windows NT allows remote attackers to list all users in a domain by obtaining the domain SID with the LsaQueryInformationPolicy policy function via a null session and using the SID to list the users. |
Windows NT 4.0 SP 6a allows a local user with write access to winnt/system32 to cause a denial of service (crash in lsass.exe) by running the NT4ALL exploit program in 'SPECIAL' mode. |
Windows 2000 and Windows NT allows local users to cause a denial of service (reboot) by executing a command at the command prompt and pressing the F7 and enter keys several times while the command is executing, possibly...Show more |
1Microsoft 3Frontpage Server Extensions Windows 2000Windows NtApr 16, 2026 Jul 21, 2001 N/A· v4 N/A· v3 7.5 HIGH· v2 Buffer overflow in Microsoft Visual Studio RAD Support sub-component of FrontPage Server Extensions allows remote attackers to execute arbitrary commands via a long registration request (URL) to fp30reg.dll. |
7Freebsd HpLinux+4 more9Freebsd Hp UxLinux Kernel+6 moreApr 16, 2026 Jul 7, 2001 N/A· v4 N/A· v3 5.0 MEDIUM· v2 Multiple TCP implementations could allow remote attackers to cause a denial of service (bandwidth and CPU exhaustion) by setting the maximum segment size (MSS) to a very small number and requesting large amounts of data,...Show more |
1Microsoft 6Windows 2000 Windows 95Windows 98+3 moreApr 16, 2026 Jul 2, 2001 N/A· v4 N/A· v3 7.5 HIGH· v2 Microsoft Data Access Component Internet Publishing Provider 8.103.2519.0 and earlier allows remote attackers to bypass Security Zone restrictions via WebDAV requests. |