CVE-1999-0294

Microsoft WINS - Unauthenticated Denial of Service via SNMP

Title source: llm
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for CVE-1999-0294. PoCs published by CRouland.

AI-analyzed exploit summary This is a writeup describing a vulnerability in Windows NT SNMP service that allows remote deletion of WINS records via SNMP set-requests, leading to a denial of service. The exploit requires knowledge of the SNMP community name and access to the SNMP service.

Description

All records in a WINS database can be deleted through SNMP for a denial of service.

Exploits (1)

exploitdb WRITEUP VERIFIED
by CRouland · textdoswindows
https://www.exploit-db.com/exploits/20564

This is a writeup describing a vulnerability in Windows NT SNMP service that allows remote deletion of WINS records via SNMP set-requests, leading to a denial of service. The exploit requires knowledge of the SNMP community name and access to the SNMP service.

Classification
Writeup 90%
Attack Type
Dos
Complexity
Trivial
Reliability
Reliable
Target: Windows NT Server 4.0 and Windows NT Server 4.0 Terminal Server Edition
Auth required
Prerequisites: SNMP community name · Access to SNMP service
devstral-2 · analyzed Feb 16, 2026 Full analysis →

References (1)

Core 1
Core References
Third Party Advisory, VDB Entry x_refsource_misc
https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0294

Scores

EPSS 0.1448
EPSS Percentile 96.2%

Details

Status published
Products (1)
microsoft/wins
Published Oct 01, 1997
Tracked Since Feb 18, 2026