CVE-2001-0045
UnknownEPSS 8.43%
Last modified
CVE-2001-0045 is a vulnerability of currently unknown severity. The default permissions for the RAS Administration key in Windows NT 4.0 allows local users to execute arbitrary commands by changing the value to point to a malicious DLL, aka one of the "Registry Permissions" vulnerabilities.. EPSS estimates a 8.43% chance of exploitation in the next 30 days.
Description
The default permissions for the RAS Administration key in Windows NT 4.0 allows local users to execute arbitrary commands by changing the value to point to a malicious DLL, aka one of the "Registry Permissions" vulnerabilities.
Metrics
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Microsoft | Windows Nt | 4.0 |
| Microsoft | Windows Nt | terminal_server |
References
- http://www.securityfocus.com/bid/2064Exploit, Patch, Vendor Advisory
- http://www.securityfocus.com/bid/2064Exploit, Patch, Vendor Advisory
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2001-0045?
The default permissions for the RAS Administration key in Windows NT 4.0 allows local users to execute arbitrary commands by changing the value to point to a malicious DLL, aka one of the "Registry Permissions" vulnerabilities.
How severe is CVE-2001-0045?
Severity scoring for CVE-2001-0045 is pending analysis. The EPSS model estimates a 8.43% probability of exploitation in the next 30 days.
How do I fix CVE-2001-0045?
Check the vendor references and advisories linked above for patched versions and mitigation guidance. You can also run a Strix scan to test if your systems are affected.
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2001
- CVE-2001-0039IPSwitch IMail 6.0.5 allows remote attackers to cause a deni…
- CVE-2001-0040APC UPS daemon, apcupsd, saves its process ID in a world-wri…
- CVE-2001-0041Memory leak in Cisco Catalyst 4000, 5000, and 6000 series sw…
- CVE-2001-0042PHP 3.x (PHP3) on Apache 1.3.6 allows remote attackers to re…
- CVE-2001-0043phpGroupWare before 0.9.7 allows remote attackers to execute…
- CVE-2001-0044Multiple buffer overflows in Lexmark MarkVision printer driv…
- CVE-2001-0046The default permissions for the SNMP Parameters registry key…
- CVE-2001-0047The default permissions for the MTS Package Administration r…
- CVE-2001-0048The "Configure Your Server" tool in Microsoft 2000 domain co…
- CVE-2001-0049WatchGuard SOHO FireWall 2.2.1 and earlier allows remote att…
- CVE-2001-0050Buffer overflow in BitchX IRC client allows remote attackers…
- CVE-2001-0051IBM DB2 Universal Database version 6.1 creates an account wi…
Are you affected by CVE-2001-0045?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
