Windows NT 4.0 and Windows 2000 before URP1 for Windows 2000 SP4 does not properly prevent NULL sessions from accessing certain alternate named pipes, which allows remote attackers to (1) list Windows services via svcctl or (2) read eventlogs via eventlog.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: mitre
Published: 2005-07-11T04:00:00
Updated: 2024-08-07T22:15:37.455Z
Reserved: 2005-07-06T00:00:00
Link: CVE-2005-2150
Vulnrichment
No data.
NVD
Status : Modified
Published: 2005-07-11T04:00:00.000
Modified: 2024-11-20T23:58:54.087
Link: CVE-2005-2150
Redhat
No data.