VendorsMicrosoftwindows_nt3.5.1
Vulnerabilities

Microsoft Windows 3.5.1

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

12CVEs
CVE-1999-0590
A system does not present an appropriate legal message or warning to a user who is accessing it.
Published 2000-02-04 · Modified
10.0EPSS 0.060
CVE-2006-0010
Heap-based buffer overflow in T2EMBED.DLL in Microsoft Windows 2000 SP4, XP SP1 and SP2, and Server 2003 up to SP1, Windows 98, and Windows ME allows remote attackers to execute arbitrary code via an e-mail message or web page with a crafted Embedded Open Type (EOT) web font that triggers the overflow during decompression.
Published 2006-01-10 · Modified
9.3EPSS 0.331
CVE-1999-0391
The cryptographic challenge of SMB authentication in Windows 95 and Windows 98 can be reused, allowing an attacker to replay the response and impersonate a user.
Published 1999-09-29 · Modified
7.5EPSS 0.049
CVE-1999-0382
The screen saver in Windows NT does not verify that its security context has been changed properly, allowing attackers to run programs with elevated privileges.
Published 1999-09-29 · Modified
7.21 PoCEPSS 0.031
CVE-1999-0344
NT users can gain debug-level access on a system process using the Sechole exploit.
Published 1999-09-29 · Modified
7.2EPSS 0.014
CVE-1999-1361
Windows NT 3.51 and 4.0 running WINS (Windows Internet Name Service) allows remote attackers to cause a denial of service (resource exhaustion) via a flood of malformed packets, which causes the server to slow down and fill the event logs with error messages.
Published 2001-09-12 · Modified
6.4EPSS 0.086
CVE-1999-0015
Teardrop IP denial of service.
Published 2000-02-04 · Modified
5.01 PoCEPSS 0.354
CVE-1999-0179
Windows NT crashes or locks up when a Samba client executes a "cd .." command on a file share.
Published 1999-09-29 · Modified
5.0EPSS 0.060
CVE-1999-0376
Local users in Windows NT can obtain administrator privileges by changing the KnownDLLs list to reference malicious programs.
Published 1999-09-29 · Modified
4.61 PoCEPSS 0.024
CVE-1999-0585
A Windows NT administrator account has the default name of Administrator.
Published 2000-02-04 · Modified
2.1EPSS 0.025
CVE-1999-0595
A Windows NT system does not clear the system page file during shutdown, which might allow sensitive information to be recorded.
Published 2000-02-04 · Modified
2.1EPSS 0.025
CVE-1999-1363
Windows NT 3.51 and 4.0 allow local users to cause a denial of service (crash) by running a program that creates a large number of locks on a file, which exhausts the NonPagedPool.
Published 2002-03-09 · Modified
2.1EPSS 0.015