5

CVE-2004-0899

The DHCP Server service for Microsoft Windows NT 4.0 Server and Terminal Server Edition, with DHCP logging enabled, does not properly validate the length of certain messages, which allows remote attackers to cause a denial of service (application crash) via a malformed DHCP message, aka "Logging Vulnerability."
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Microsoft ≫ Windows Nt Version 4.0
Microsoft ≫ Windows Nt Version 4.0 Edition alpha
Microsoft ≫ Windows Nt Version 4.0 Edition enterprise_server
Microsoft ≫ Windows Nt Version 4.0 Edition server
Microsoft ≫ Windows Nt Version 4.0 Edition terminal_server
Microsoft ≫ Windows Nt Version 4.0 Edition terminal_server_alpha
Microsoft ≫ Windows Nt Version 4.0 Update sp1
Microsoft ≫ Windows Nt Version 4.0 Update sp1 Edition alpha
Microsoft ≫ Windows Nt Version 4.0 Update sp1 Edition enterprise_server
Microsoft ≫ Windows Nt Version 4.0 Update sp1 Edition server
Microsoft ≫ Windows Nt Version 4.0 Update sp1 Edition terminal_server
Microsoft ≫ Windows Nt Version 4.0 Update sp2
Microsoft ≫ Windows Nt Version 4.0 Update sp2 Edition alpha
Microsoft ≫ Windows Nt Version 4.0 Update sp2 Edition enterprise_server
Microsoft ≫ Windows Nt Version 4.0 Update sp2 Edition server
Microsoft ≫ Windows Nt Version 4.0 Update sp2 Edition terminal_server
Microsoft ≫ Windows Nt Version 4.0 Update sp3
Microsoft ≫ Windows Nt Version 4.0 Update sp3 Edition alpha
Microsoft ≫ Windows Nt Version 4.0 Update sp3 Edition enterprise_server
Microsoft ≫ Windows Nt Version 4.0 Update sp3 Edition server
Microsoft ≫ Windows Nt Version 4.0 Update sp3 Edition terminal_server
Microsoft ≫ Windows Nt Version 4.0 Update sp4
Microsoft ≫ Windows Nt Version 4.0 Update sp4 Edition alpha
Microsoft ≫ Windows Nt Version 4.0 Update sp4 Edition enterprise_server
Microsoft ≫ Windows Nt Version 4.0 Update sp4 Edition server
Microsoft ≫ Windows Nt Version 4.0 Update sp4 Edition terminal_server
Microsoft ≫ Windows Nt Version 4.0 Update sp5
Microsoft ≫ Windows Nt Version 4.0 Update sp5 Edition alpha
Microsoft ≫ Windows Nt Version 4.0 Update sp5 Edition enterprise_server
Microsoft ≫ Windows Nt Version 4.0 Update sp5 Edition server
Microsoft ≫ Windows Nt Version 4.0 Update sp5 Edition terminal_server
Microsoft ≫ Windows Nt Version 4.0 Update sp6
Microsoft ≫ Windows Nt Version 4.0 Update sp6 Edition alpha
Microsoft ≫ Windows Nt Version 4.0 Update sp6 Edition enterprise_server
Microsoft ≫ Windows Nt Version 4.0 Update sp6 Edition server
Microsoft ≫ Windows Nt Version 4.0 Update sp6 Edition terminal_server
Microsoft ≫ Windows Nt Version 4.0 Update sp6a
Microsoft ≫ Windows Nt Version 4.0 Update sp6a Edition alpha
Microsoft ≫ Windows Nt Version 4.0 Update sp6a Edition enterprise_server
Microsoft ≫ Windows Nt Version 4.0 Update sp6a Edition server
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 72.57% 0.994
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
NIST 5 10 2.9
AV:N/AC:L/Au:N/C:N/I:N/A:P
Es wurden noch keine Informationen zu CWE veröffentlicht.
https://docs.microsoft.com/en-us/security-updates/securitybulletins/2004/ms04-042
https://exchange.xforce.ibmcloud.com/vulnerabilities/18341
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A2280
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A4282