Description
Windows NT 4.0 and Windows 2000 before URP1 for Windows 2000 SP4 does not properly prevent NULL sessions from accessing certain alternate named pipes, which allows remote attackers to (1) list Windows services via svcctl or (2) read eventlogs via eventlog.
References (8)
Core 8
Core References
Various Sources x_refsource_misc
http://www.hsc.fr/ressources/presentations/null_sessions/
Mailing List mailing-list
x_refsource_bugtraq
http://marc.info/?l=bugtraq&m=112076409813099&w=2
Third Party Advisory, VDB Entry vdb-entry
x_refsource_sectrack
http://securitytracker.com/id?1014417
Third Party Advisory, VDB Entry vdb-entry
x_refsource_bid
http://www.securityfocus.com/bid/14177
Third Party Advisory, VDB Entry vdb-entry
x_refsource_xf
https://exchange.xforce.ibmcloud.com/vulnerabilities/21286
Third Party Advisory, VDB Entry vdb-entry
x_refsource_bid
http://www.securityfocus.com/bid/14178
Third Party Advisory, VDB Entry vdb-entry
x_refsource_xf
https://exchange.xforce.ibmcloud.com/vulnerabilities/21288
Third Party Advisory third-party-advisory
x_refsource_secunia
http://secunia.com/advisories/14189
Scores
EPSS
0.1936
EPSS Percentile
97.1%
Details
Status
published
Products (2)
microsoft/windows_2000
microsoft/windows_nt
4.0
Published
Jul 11, 2005
Tracked Since
Feb 18, 2026