This CPE summary could be partial or incomplete. Please contact us for a detailed listing.
Summary
| Summuary | |
|---|---|
| CPE Name | cpe:/o:microsoft:windows_nt:4.0:sp2:terminal_server |
| Detail | |||
|---|---|---|---|
| Vendor | Microsoft | First view | 2000-12-31 |
| Product | Windows Nt | Last view | 2008-10-20 |
| Version | 4.0 | Type | Os |
| Edition | terminal_server | ||
| Language | |||
| Update | sp2 | ||
| CPE Product | cpe:/o:microsoft:windows_nt | ||
Activity : Yearly
Related : CVE
This CPE have more than 25 Relations. If you want to see a complete summary for this CPE, please contact us.
| Date | Alert | Access Vector | Access Complexity | Authentification | ||
|---|---|---|---|---|---|---|
| 7.1 | 2008-10-20 | CVE-2008-4609 | Network | Medium | None Requ... | |
| 9.3 | 2006-06-13 | CVE-2006-2379 | Network | Medium | None Requ... | |
| 5 | 2006-05-09 | CVE-2006-1184 | Network | Low | None Requ... | |
| 7.5 | 2006-05-09 | CVE-2006-0034 | Network | Low | None Requ... | |
| 5.1 | 2006-04-03 | CVE-2006-1591 | Network | High | None Requ... | |
| Date | Alert | Access Vector | Access Complexity | Authentification | ||
|---|---|---|---|---|---|---|
| 9.3 | 2006-01-10 | CVE-2006-0010 | Network | Medium | None Requ... | |
| 5 | 2005-05-02 | CVE-2005-1184 | Network | Low | None Requ... | |
| 10 | 2005-05-02 | CVE-2005-0050 | Network | Low | None Requ... | |
| 7.5 | 2005-05-02 | CVE-2005-0045 | Network | Low | None Requ... | |
| 7.5 | 2005-04-27 | CVE-2005-0416 | Network | Low | None Requ... | |
| 10 | 2005-01-10 | CVE-2004-1080 | Network | Low | None Requ... | |
| 10 | 2005-01-10 | CVE-2004-0901 | Network | Low | None Requ... | |
| 10 | 2005-01-10 | CVE-2004-0900 | Network | Low | None Requ... | |
| 5 | 2005-01-10 | CVE-2004-0899 | Network | Low | None Requ... | |
| 7.2 | 2005-01-10 | CVE-2004-0893 | Local | Low | None Requ... | |
| 10 | 2005-01-10 | CVE-2004-0571 | Network | Low | None Requ... | |
| 10 | 2005-01-10 | CVE-2004-0568 | Network | Low | None Requ... | |
| 5.1 | 2004-12-31 | CVE-2004-1306 | Network | High | None Requ... | |
| 5 | 2004-12-23 | CVE-2004-1361 | Network | Low | None Requ... | |
| 5 | 2004-12-23 | CVE-2004-1305 | Network | Low | None Requ... | |
| 10 | 2004-08-06 | CVE-2004-0201 | Network | Low | None Requ... | |
| 9.3 | 2004-03-03 | CVE-2003-0825 | Network | Medium | None Requ... | |
| 7.5 | 2004-03-03 | CVE-2003-0818 | Network | Low | None Requ... | |
| 5.1 | 2003-11-17 | CVE-2003-0813 | Network | High | None Requ... |
CWE : Common Weakness Enumeration
| % | id | Name |
|---|---|---|
| 50% (3) | CWE-119 | Failure to Constrain Operations within the Bounds of a Memory Buffer |
| 33% (2) | CWE-20 | Improper Input Validation |
| 16% (1) | CWE-16 | Configuration |
CAPEC : Common Attack Pattern Enumeration & Classificatio
| id | Name |
|---|---|
| CAPEC-21 | Exploitation of Session Variables, Resource IDs and other Trusted Credentials |
| CAPEC-27 | Leveraging Race Conditions via Symbolic Links |
| CAPEC-29 | Leveraging Time-of-Check and Time-of-Use (TOCTOU) Race Conditions |
| CAPEC-47 | Buffer Overflow via Parameter Expansion |
| CAPEC-59 | Session Credential Falsification through Prediction |
| id | Name |
|---|---|
| CAPEC-60 | Reusing Session IDs (aka Session Replay) |
| CAPEC-75 | Manipulating Writeable Configuration Files |
| CAPEC-76 | Manipulating Input to File System Calls |
| CAPEC-89 | Pharming |
| CAPEC-111 | JSON Hijacking (aka JavaScript Hijacking) |
Oval Markup Language : Definitions
This CPE have more than 25 Relations. If you want to see a complete summary for this CPE, please contact us.
| OvalID | Name |
|---|---|
| oval:org.mitre.oval:def:63 | Windows 2000 Remote Access Service Phonebook Buffer Overflow |
| oval:org.mitre.oval:def:61 | Windows NT Remote Access Service Phonebook Buffer Overflow |
| oval:org.mitre.oval:def:374 | HTML Help ActiveX Control Buffer Overflow |
| oval:org.mitre.oval:def:403 | Code Execution via Compiled HTML Help File |
| oval:org.mitre.oval:def:189 | Network Share Provider Buffer Overflow |
| id | Name |
|---|---|
| oval:org.mitre.oval:def:2671 | Windows 2000 Certificate Validation Identity Spoofing Vulnerability (Test 2) |
| oval:org.mitre.oval:def:1332 | Windows 2000 Certificate Validation Identity Spoofing Vulnerability (Test 1) |
| oval:org.mitre.oval:def:1056 | Microsoft Certificate Validation Flaw Identity Spoofing Vulnerability |
| oval:org.mitre.oval:def:199 | Weak Encryption in RDP Protocol |
| oval:org.mitre.oval:def:582 | MSJava Applet CODEBASE File Access Vulnerability |
| oval:org.mitre.oval:def:59 | Microsoft Windows RPC Denial of Service |
| oval:org.mitre.oval:def:103 | Windows RPC Locator Service Buffer Overflow |
| oval:org.mitre.oval:def:795 | DEPRECATED: Windows Script Engine Heap Overflow (Test 3) |
| oval:org.mitre.oval:def:794 | DEPRECATED: Windows Script Engine Heap Overflow (Test 2) |
| oval:org.mitre.oval:def:200 | DEPRECATED: Windows Script Engine Heap Overflow (Test 1) |
| oval:org.mitre.oval:def:134 | Windows Script Engine Heap Overflow (Test 4) |
| oval:org.mitre.oval:def:779 | Windows XP Kernel Debugger-based Buffer Overflow (Test 2) |
| oval:org.mitre.oval:def:3145 | Windows 2000 Kernel Debugger-based Buffer Overflow |
| oval:org.mitre.oval:def:262 | Windows 2000 Kernel Debugger-based Buffer Overflow |
| oval:org.mitre.oval:def:2265 | Windows NT Terminal Server Kernel Debugger-based Buffer Overflow |
| oval:org.mitre.oval:def:2022 | Windows NT Kernel Debugger-based Buffer Overflow |
| oval:org.mitre.oval:def:142 | Suppressed OVAL142, covered by OVAL2022 |
| oval:org.mitre.oval:def:1264 | Windows XP Kernel Debugger-based Buffer Overflow (Test 1) |
| oval:org.mitre.oval:def:3391 | Windows XP SMB Buffer Overflow |
| oval:org.mitre.oval:def:146 | Windows NT SMB Buffer Overflow |
Open Source Vulnerability Database (OSVDB)
This CPE have more than 25 Relations. If you want to see a complete summary for this CPE, please contact us.
| id | Description |
|---|---|
| 62144 | F5 Multiple Products TCP/IP Implementation Queue Connection Saturation TCP St... |
| 61133 | Citrix Multiple Products TCP/IP Implementation Queue Connection Saturation TC... |
| 59732 | Microsoft Windows Screensaver Domain Account Lock Verification Local Brute Fo... |
| 59482 | Blue Coat Multiple Products TCP/IP Implementation Queue Connection Saturation... |
| 58614 | McAfee Email and Web Security Appliance TCP/IP Implementation Queue Connectio... |
| id | Description |
|---|---|
| 58321 | Check Point Multiple Products TCP/IP Implementation Queue Connection Saturati... |
| 58189 | Yamaha RT Series Routers TCP/IP Implementation Queue Connection Saturation TC... |
| 57993 | Solaris TCP/IP Implementation Queue Connection Saturation TCP State Table Rem... |
| 57795 | Microsoft Windows TCP/IP Implementation Queue Connection Saturation TCP State... |
| 57794 | Multiple BSD TCP/IP Implementation Queue Connection Saturation TCP State Tabl... |
| 57793 | Multiple Linux TCP/IP Implementation Queue Connection Saturation TCP State Ta... |
| 50286 | Cisco TCP/IP Implementation Queue Connection Saturation TCP State Table Remot... |
| 26433 | Microsoft Windows TCP/IP Protocol Driver Source Routing Overflow |
| 25336 | Microsoft Windows Distributed Transaction Coordinator (DTC) BuildContextW Req... |
| 25335 | Microsoft Windows Distributed Transaction Coordinator (DTC) CRpcIoManagerServ... |
| 24802 | Microsoft Windows Help winhlp32.exe Embedded Image Processing Overflow |
| 20188 | Microsoft Windows Crafted SMB SMBnegprots Request DOS |
| 19187 | Microsoft Windows NT/2000 DNS Server Non-delegated NS Glue Record Cache Poiso... |
| 18829 | Microsoft Windows Open Type (EOT) Font Handling Remote Overflow |
| 16610 | Multiple Vendor TCP Implementation Malformed Ack Number "Keep Alive" DoS |
| 16430 | Microsoft Windows Animated Cursor (ANI) Capability AnimationHeaderBlock Lengt... |
| 14475 | Microsoft Windows Script Engine for Jscript JsArrayFunctionHeapSort Overflow |
| 13600 | Microsoft Windows SMB Transaction Data Overflow |
| 13599 | Microsoft Windows License Logging Service Overflow |
| 13418 | Microsoft Virtual Machine Applet Tag Malformed CODEBASE Arbitrary File Access |
ExploitDB Exploits
| id | Description |
|---|---|
| 21746 | MS Windows 2000/NT 4/XP Network Share Provider SMB Request Buffer Overflow (1) |
| 1065 | MS Windows (SMB) Transaction Response Handling Exploit (MS05-011) |
Metasploit Exploits
| id | Description |
|---|---|
| 2004-12-14 | Microsoft WINS Service Memory Overwrite |
| 2003-07-16 | Microsoft RPC DCOM Interface Overflow |
| 2004-02-10 | Microsoft ASN.1 Library Bitstring Heap Overflow |












