← All CVEs

CVE-2005-2150

medium · 5

Windows NT 4.0 and Windows 2000 before URP1 for Windows 2000 SP4 does not properly prevent NULL sessions from accessing certain alternate named pipes, which allows remote attackers to (1) list Windows services via svcctl or (2) read eventlogs via eventlog.

5
CVSS
19.4%
EPSS (exploit prob.)
97th
EPSS percentile
2005-07-11
Published

AV:N/AC:L/Au:N/C:P/I:N/A:N

Affected products

VendorProductAffected versions
microsoftwindows_2000all versions
microsoftwindows_nt4.0

Check a specific version with /api/v1/cve/match.

References

Query this programmatically:

curl https://evil-db.io/api/v1/cve/CVE-2005-2150