CVE-2000-0070: High severity Microsoft Windows NT vulnerability
Published Jan 12, 2000
·Updated
NtImpersonateClientOfPort local procedure call in Windows NT 4.0 allows local users to gain privileges, aka "Spoofed LPC Port Request."
Affected Software
7 affected components
Microsoft Windows NT=4.0
Microsoft Windows NT=4.0-sp2
Microsoft Windows NT=4.0-sp1
Microsoft Windows NT=4.0-sp4
Microsoft Windows NT=4.0-sp6
Microsoft Windows NT=4.0-sp3
Microsoft Windows NT=4.0-sp5
Remediation
Event History
Jan 12, 2000
CVE Published
05:00 AM
Data Sourced
via NVD·05:00 AM
RemedyDescriptionSeverityAffected Software
Apr 25, 2000
CVE Published
via MITRE·08:00 AM
Data Sourced
via MITRE·08:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2000-0070?
CVE-2000-0070 has a medium severity rating, indicating that it can potentially lead to privilege escalation for local users.
2
How do I fix CVE-2000-0070?
To mitigate CVE-2000-0070, it is recommended to apply the latest security patches from Microsoft for Windows NT 4.0.
3
What systems are affected by CVE-2000-0070?
CVE-2000-0070 affects all versions of Microsoft Windows NT 4.0, including all service packs.
4
Can CVE-2000-0070 be exploited remotely?
No, CVE-2000-0070 can only be exploited locally by a user with access to the system.
5
What type of vulnerability is CVE-2000-0070?
CVE-2000-0070 is a privilege escalation vulnerability related to local procedure calls.