CVE-2001-0016
Windows NT < 4.0 - Local Privilege Escalation via NTLMSSP LPC Request
Title source: llmDescription
NTLM Security Support Provider (NTLMSSP) service does not properly check the function number in an LPC request, which could allow local users to gain administrator level access.
References (4)
Core 4
Core References
Vendor Advisory vendor-advisory
x_refsource_ms
https://docs.microsoft.com/en-us/security-updates/securitybulletins/2001/ms01-008
Various Sources vendor-advisory
x_refsource_bindview
http://razor.bindview.com/publish/advisories/adv_NTLMSSP.html
Third Party Advisory, VDB Entry vdb-entry
x_refsource_bid
http://www.securityfocus.com/bid/2348
Third Party Advisory, VDB Entry vdb-entry
x_refsource_xf
https://exchange.xforce.ibmcloud.com/vulnerabilities/6076
Scores
EPSS
0.0207
EPSS Percentile
79.7%
Details
Status
published
Products (1)
microsoft/windows_nt
< 4.0
Published
Mar 12, 2001
Tracked Since
Feb 18, 2026