CVE-2001-1518
Last modified
CVE-2001-1518 is a vulnerability of currently unknown severity. RunAs (runas.exe) in Windows 2000 only creates one session instance at a time, which allows local users to cause a denial of service (RunAs hang) by creating a named pipe session with the authentication server without any request for service. NOTE: the vendor disputes this vulnerability, however the vendor also presents a scenario in which other users could be affected if running on a Terminal Server. EPSS estimates a 5.63% chance of exploitation in the next 30 days.
Description
RunAs (runas.exe) in Windows 2000 only creates one session instance at a time, which allows local users to cause a denial of service (RunAs hang) by creating a named pipe session with the authentication server without any request for service. NOTE: the vendor disputes this vulnerability, however the vendor also presents a scenario in which other users could be affected if running on a Terminal Server. Therefore this is a vulnerability.
Metrics
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Microsoft | Windows 2000 | All versions |
References
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2001-1518?
How severe is CVE-2001-1518?
How do I fix CVE-2001-1518?
Are you affected by CVE-2001-1518?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
