CVE-2001-0016

Windows NT < 4.0 - Local Privilege Escalation via NTLMSSP LPC Request

Title source: llm
STIX 2.1

Description

NTLM Security Support Provider (NTLMSSP) service does not properly check the function number in an LPC request, which could allow local users to gain administrator level access.

References (4)

Core 4
Core References
Various Sources vendor-advisory x_refsource_bindview
http://razor.bindview.com/publish/advisories/adv_NTLMSSP.html
Third Party Advisory, VDB Entry vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/2348
Third Party Advisory, VDB Entry vdb-entry x_refsource_xf
https://exchange.xforce.ibmcloud.com/vulnerabilities/6076

Scores

EPSS 0.0207
EPSS Percentile 79.7%

Details

Status published
Products (1)
microsoft/windows_nt < 4.0
Published Mar 12, 2001
Tracked Since Feb 18, 2026