Windows Nt
by Microsoft
CVEs (272)
| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-1999-0593 | 0.00 | — | 0.02 | Jan 1, 1999 | The default setting for the Winlogon key entry ShutdownWithoutLogon in Windows NT allows users with physical access to shut down a Windows NT system without logging in. | |||
| CVE-1999-0226 | 0.00 | — | 0.06 | Jan 1, 1999 | Windows NT TCP/IP processes fragmented IP packets improperly, causing a denial of service. | |||
| CVE-1999-0577 | 0.00 | — | 0.06 | Jan 1, 1999 | A Windows NT system's file audit policy does not log an event success or failure for non-critical files or directories. | |||
| CVE-1999-0549 | 0.00 | — | 0.02 | Jan 1, 1999 | Windows NT automatically logs in an administrator upon rebooting. | |||
| CVE-1999-0560 | 0.00 | — | 0.06 | Jan 1, 1999 | A system-critical Windows NT file or directory has inappropriate permissions. | |||
| CVE-1999-0611 | 0.00 | — | 0.02 | Jan 1, 1999 | A system-critical Windows NT registry key has an inappropriate value. | |||
| CVE-1999-0579 | 0.00 | — | 0.06 | Jan 1, 1999 | A Windows NT system's registry audit policy does not log an event success or failure for non-critical registry keys. | |||
| CVE-1999-0384 | 0.00 | — | 0.01 | Jan 1, 1999 | The Forms 2.0 ActiveX control (included with Visual Basic for Applications 5.0) can be used to read text from a user's clipboard when the user accesses documents with ActiveX content. | |||
| CVE-1999-0578 | 0.00 | — | 0.02 | Jan 1, 1999 | A Windows NT system's registry audit policy does not log an event success or failure for security-critical registry keys. | |||
| CVE-1999-0592 | 0.00 | — | 0.02 | Jan 1, 1999 | The Logon box of a Windows NT system displays the name of the last user who logged in. | |||
| CVE-1999-0570 | 0.00 | — | 0.06 | Jan 1, 1999 | Windows NT is not using a password filter utility, e.g. PASSFILT.DLL. | |||
| CVE-1999-0665 | 0.00 | — | 0.02 | Jan 1, 1999 | An application-critical Windows NT registry key has an inappropriate value. | |||
| CVE-1999-0546 | 0.00 | — | 0.02 | Oct 1, 1998 | The Windows NT guest account is enabled. | |||
| CVE-1999-0505 | 0.00 | — | 0.02 | Oct 1, 1998 | A Windows NT domain user or administrator account has a guessable password. | |||
| CVE-1999-0344 | 0.00 | — | 0.01 | Aug 1, 1998 | NT users can gain debug-level access on a system process using the Sechole exploit. | |||
| CVE-1999-0258 | 0.00 | — | 0.06 | Feb 13, 1998 | Bonk variation of teardrop IP fragmentation denial of service. | |||
| CVE-1999-1217 | 0.00 | — | 0.02 | Jul 25, 1997 | The PATH in Windows NT includes the current working directory (.), which could allow local users to gain privileges by placing Trojan horse programs with the same name as commonly used system programs into certain directories. | |||
| CVE-1999-0275 | 0.00 | — | 0.06 | Jun 10, 1997 | Denial of service in Windows NT DNS servers by flooding port 53 with too many characters. | |||
| CVE-1999-0227 | 0.00 | — | 0.05 | Jun 1, 1997 | Access violation in LSASS.EXE (LSA/LSARPC) program in Windows NT allows a denial of service. | |||
| CVE-1999-0292 | 0.00 | — | 0.06 | Apr 1, 1997 | Denial of service through Winpopup using large user names. |
- CVE-1999-0593Jan 1, 1999risk 0.00cvss —epss 0.02
The default setting for the Winlogon key entry ShutdownWithoutLogon in Windows NT allows users with physical access to shut down a Windows NT system without logging in.
- CVE-1999-0226Jan 1, 1999risk 0.00cvss —epss 0.06
Windows NT TCP/IP processes fragmented IP packets improperly, causing a denial of service.
- CVE-1999-0577Jan 1, 1999risk 0.00cvss —epss 0.06
A Windows NT system's file audit policy does not log an event success or failure for non-critical files or directories.
- CVE-1999-0549Jan 1, 1999risk 0.00cvss —epss 0.02
Windows NT automatically logs in an administrator upon rebooting.
- CVE-1999-0560Jan 1, 1999risk 0.00cvss —epss 0.06
A system-critical Windows NT file or directory has inappropriate permissions.
- CVE-1999-0611Jan 1, 1999risk 0.00cvss —epss 0.02
A system-critical Windows NT registry key has an inappropriate value.
- CVE-1999-0579Jan 1, 1999risk 0.00cvss —epss 0.06
A Windows NT system's registry audit policy does not log an event success or failure for non-critical registry keys.
- CVE-1999-0384Jan 1, 1999risk 0.00cvss —epss 0.01
The Forms 2.0 ActiveX control (included with Visual Basic for Applications 5.0) can be used to read text from a user's clipboard when the user accesses documents with ActiveX content.
- CVE-1999-0578Jan 1, 1999risk 0.00cvss —epss 0.02
A Windows NT system's registry audit policy does not log an event success or failure for security-critical registry keys.
- CVE-1999-0592Jan 1, 1999risk 0.00cvss —epss 0.02
The Logon box of a Windows NT system displays the name of the last user who logged in.
- CVE-1999-0570Jan 1, 1999risk 0.00cvss —epss 0.06
Windows NT is not using a password filter utility, e.g. PASSFILT.DLL.
- CVE-1999-0665Jan 1, 1999risk 0.00cvss —epss 0.02
An application-critical Windows NT registry key has an inappropriate value.
- CVE-1999-0546Oct 1, 1998risk 0.00cvss —epss 0.02
The Windows NT guest account is enabled.
- CVE-1999-0505Oct 1, 1998risk 0.00cvss —epss 0.02
A Windows NT domain user or administrator account has a guessable password.
- CVE-1999-0344Aug 1, 1998risk 0.00cvss —epss 0.01
NT users can gain debug-level access on a system process using the Sechole exploit.
- CVE-1999-0258Feb 13, 1998risk 0.00cvss —epss 0.06
Bonk variation of teardrop IP fragmentation denial of service.
- CVE-1999-1217Jul 25, 1997risk 0.00cvss —epss 0.02
The PATH in Windows NT includes the current working directory (.), which could allow local users to gain privileges by placing Trojan horse programs with the same name as commonly used system programs into certain directories.
- CVE-1999-0275Jun 10, 1997risk 0.00cvss —epss 0.06
Denial of service in Windows NT DNS servers by flooding port 53 with too many characters.
- CVE-1999-0227Jun 1, 1997risk 0.00cvss —epss 0.05
Access violation in LSASS.EXE (LSA/LSARPC) program in Windows NT allows a denial of service.
- CVE-1999-0292Apr 1, 1997risk 0.00cvss —epss 0.06
Denial of service through Winpopup using large user names.
Page 13 of 14