PT-2001-1185 · Microsoft · Windows Nt 4.0 Terminal Server

Published

2001-01-09

·

Updated

2018-10-12

·

CVE-2000-1149

CVSS v2.0

7.5

High

VectorAV:N/AC:L/Au:N/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions Windows NT 4.0 Terminal Server
Description A buffer overflow issue exists in the RegAPI.DLL component used by Windows NT 4.0 Terminal Server. This issue allows remote attackers to execute arbitrary commands by providing a long username.
Recommendations For Windows NT 4.0 Terminal Server, consider restricting access to the RegAPI.DLL component until a fix is available. As a temporary workaround, limit the length of the username parameter to prevent exploitation.

Exploit

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2000-1149

Affected Products

Windows Nt 4.0 Terminal Server