CVE-2001-0046
The default permissions for the SNMP Parameters registry key in Windows NT 4.0 allows remote attackers to read and possibly modify the SNMP community strings to obtain sensitive information or modify network configuration, aka one of the "Registry…
Does this matter?
Lower severity and a low EPSS score (4.98%). Track it; it rarely justifies an emergency change on its own.
Description
The default permissions for the SNMP Parameters registry key in Windows NT 4.0 allows remote attackers to read and possibly modify the SNMP community strings to obtain sensitive information or modify network configuration, aka one of the "Registry Permissions" vulnerabilities.
- CVSS 2.0
- 4.6 MEDIUMAV:L/AC:L/Au:N/C:P/I:P/A:P
- EPSS
- 4.98% probability · 92th percentile
- CISA KEV
- Not listed
- Affected
- microsoft/windows 2000 · microsoft/windows nt
- Source
- cve@mitre.org
References
- http://www.securityfocus.com/bid/2066Patch, Vendor Advisory
- https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-095
- https://exchange.xforce.ibmcloud.com/vulnerabilities/5672
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A139
- http://www.securityfocus.com/bid/2066Patch, Vendor Advisory
- https://docs.microsoft.com/en-us/security-updates/securitybulletins/2000/ms00-095
- https://exchange.xforce.ibmcloud.com/vulnerabilities/5672
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A139
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.