← Back

Windows Nt

windows_nt

Vendor: Microsoft • 267 CVEs

CVEs (267)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Microsoft
1Windows Nt
Apr 16, 2026
Dec 31, 1999
N/A· v4
N/A· v3
7.5 HIGH· v2
RSH service utility RSHSVC in Windows NT 3.5 through 4.0 does not properly restrict access as specified in the .Rhosts file when a user comes from an authorized host, which could allow unauthorized users to access the se...Show more
RSH service utility RSHSVC in Windows NT 3.5 through 4.0 does not properly restrict access as specified in the .Rhosts file when a user comes from an authorized host, which could allow unauthorized users to access the service by logging in from an authorized host.Show less
1Microsoft
1Windows Nt
Apr 16, 2026
Dec 31, 1999
N/A· v4
N/A· v3
2.1 LOW· v2
GINA in Windows NT 4.0 allows attackers with physical access to display a portion of the clipboard of the user who has locked the workstation by pasting (CTRL-V) the contents into the username prompt.
1Microsoft
1Windows Nt
Apr 16, 2026
Dec 31, 1999
N/A· v4
N/A· v3
2.1 LOW· v2
Windows NT 4.0 allows local users to cause a denial of service (crash) via an illegal kernel mode address to the functions (1) GetThreadContext or (2) SetThreadContext.
1Microsoft
1Windows Nt
Apr 16, 2026
Dec 31, 1999
N/A· v4
N/A· v3
2.1 LOW· v2
Windows NT 3.51 and 4.0 allow local users to cause a denial of service (crash) by running a program that creates a large number of locks on a file, which exhausts the NonPagedPool.
1Microsoft
1Windows Nt
Apr 16, 2026
Dec 31, 1999
N/A· v4
N/A· v3
2.1 LOW· v2
Win32k.sys in Windows NT 4.0 before SP2 allows local users to cause a denial of service (crash) by calling certain WIN32K functions with incorrect parameters.
1Microsoft
1Windows Nt
Apr 16, 2026
Dec 31, 1999
N/A· v4
N/A· v3
2.1 LOW· v2
Windows NT 4.0 allows local users to cause a denial of service via a user mode application that closes a handle that was opened in kernel mode, which causes a crash when the kernel attempts to close the handle.
1Microsoft
1Windows Nt
Apr 16, 2026
Dec 31, 1999
N/A· v4
N/A· v3
7.5 HIGH· v2
When the Ntconfig.pol file is used on a server whose name is longer than 13 characters, Windows NT does not properly enforce policies for global groups, which could allow users to bypass restrictions that were intended b...Show more
When the Ntconfig.pol file is used on a server whose name is longer than 13 characters, Windows NT does not properly enforce policies for global groups, which could allow users to bypass restrictions that were intended by those policies.Show less
1Microsoft
2Windows 2000
Windows Nt
Apr 16, 2026
Dec 31, 1999
N/A· v4
N/A· v3
4.6 MEDIUM· v2
When an administrator in Windows NT or Windows 2000 changes a user policy, the policy is not properly updated if the local ntconfig.pol is not writable by the user, which could allow local users to bypass restrictions th...Show more
When an administrator in Windows NT or Windows 2000 changes a user policy, the policy is not properly updated if the local ntconfig.pol is not writable by the user, which could allow local users to bypass restrictions that would otherwise be enforced by the policy, possibly by changing the policy file to be read-only.Show less
1Microsoft
1Windows Nt
Apr 16, 2026
Dec 31, 1999
N/A· v4
N/A· v3
4.6 MEDIUM· v2
Windows NT 4.0 SP4 and earlier allows local users to gain privileges by modifying the symbolic link table in the \?? object folder using a different case letter (upper or lower) to point to a different device.
1Microsoft
1Windows Nt
Apr 16, 2026
Dec 31, 1999
N/A· v4
N/A· v3
7.5 HIGH· v2
Passfilt.dll in Windows NT SP2 allows users to create a password that contains the user's name, which could make it easier for an attacker to guess.
1Microsoft
1Windows Nt
Apr 16, 2026
Dec 31, 1999
N/A· v4
N/A· v3
2.1 LOW· v2
Office Shortcut Bar (OSB) in Windows 3.51 enables backup and restore permissions, which are inherited by programs such as File Manager that are started from the Shortcut Bar, which could allow local users to read folders...Show more
Office Shortcut Bar (OSB) in Windows 3.51 enables backup and restore permissions, which are inherited by programs such as File Manager that are started from the Shortcut Bar, which could allow local users to read folders for which they do not have permission.Show less
1Microsoft
1Windows Nt
Apr 16, 2026
Dec 31, 1999
N/A· v4
N/A· v3
5.0 MEDIUM· v2
Netbt.sys in Windows NT 4.0 allows remote malicious DNS servers to cause a denial of service (crash) by returning 0.0.0.0 as the IP address for a DNS host name lookup.
1Microsoft
1Windows Nt
Apr 16, 2026
Dec 31, 1999
N/A· v4
N/A· v3
5.0 MEDIUM· v2
Tcpip.sys in Windows NT 4.0 before SP4 allows remote attackers to cause a denial of service via an ICMP Subnet Mask Address Request packet, when certain multiple IP addresses are bound to the same network interface.
1Microsoft
1Windows Nt
Apr 16, 2026
Dec 31, 1999
N/A· v4
N/A· v3
5.0 MEDIUM· v2
Windows NT 4.0 allows remote attackers to cause a denial of service (crash) via extra source routing data such as (1) a Routing Information Field (RIF) field with a hop count greater than 7, or (2) a list containing dupl...Show more
Windows NT 4.0 allows remote attackers to cause a denial of service (crash) via extra source routing data such as (1) a Routing Information Field (RIF) field with a hop count greater than 7, or (2) a list containing duplicate Token Ring IDs.Show less
1Microsoft
1Windows Nt
Apr 16, 2026
Dec 31, 1999
N/A· v4
7.5 HIGH· v3
5.0 MEDIUM· v2
Windows NT 4.0 does not properly shut down invalid named pipe RPC connections, which allows remote attackers to cause a denial of service (resource exhaustion) via a series of connections containing malformed data, aka t...Show more
Windows NT 4.0 does not properly shut down invalid named pipe RPC connections, which allows remote attackers to cause a denial of service (resource exhaustion) via a series of connections containing malformed data, aka the "Named Pipes Over RPC" vulnerability.Show less
1Microsoft
1Windows Nt
Apr 16, 2026
Dec 31, 1999
N/A· v4
N/A· v3
4.6 MEDIUM· v2
The "AEDebug" registry key is installed with insecure permissions, which allows local users to modify the key to specify a Trojan Horse debugger which is automatically executed on a system crash.
1Microsoft
1Windows Nt
Apr 16, 2026
Dec 31, 1999
N/A· v4
N/A· v3
5.0 MEDIUM· v2
Memory leak in SNMP agent in Windows NT 4.0 before SP5 allows remote attackers to conduct a denial of service (memory exhaustion) via a large number of queries.
1Microsoft
1Windows Nt
Apr 16, 2026
Dec 16, 1999
N/A· v4
N/A· v3
7.8 HIGH· v2
Windows NT Local Security Authority (LSA) allows remote attackers to cause a denial of service via malformed arguments to the LsaLookupSids function which looks up the SID, aka "Malformed Security Identifier Request."
1Microsoft
1Windows Nt
Apr 16, 2026
Dec 16, 1999
N/A· v4
N/A· v3
5.0 MEDIUM· v2
Windows NT with SYSKEY reuses the keystream that is used for encrypting SAM password hashes, allowing an attacker to crack passwords.
1Microsoft
3Windows 95
Windows 98Windows Nt
Apr 16, 2026
Dec 10, 1999
N/A· v4
N/A· v3
4.6 MEDIUM· v2
The Windows help system can allow a local user to execute commands as another user by editing a table of contents metafile with a .CNT extension and modifying the topic action to include the commands to be executed when...Show more
The Windows help system can allow a local user to execute commands as another user by editing a table of contents metafile with a .CNT extension and modifying the topic action to include the commands to be executed when the .hlp file is accessed.Show less