Vulnerabilities > CVE-2000-1039 - Unspecified vulnerability in Microsoft products

047910
CVSS 5.0 - MEDIUM
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
NONE
Integrity impact
NONE
Availability impact
PARTIAL
network
low complexity
microsoft
nessus

Summary

Various TCP/IP stacks and network applications allow remote attackers to cause a denial of service by flooding a target host with TCP connection attempts and completing the TCP/IP handshake without maintaining the connection state on the attacker host, aka the "NAPTHA" class of vulnerabilities. NOTE: this candidate may change significantly as the security community discusses the technical nature of NAPTHA and learns more about the affected applications. This candidate is at a higher level of abstraction than is typical for CVE.

Nessus

NASL familyWindows : Microsoft Bulletins
NASL idSMB_NT_MS00-091.NASL
descriptionThe hotfix for the
last seen2020-06-01
modified2020-06-02
plugin id10563
published2000-12-01
reporterThis script is Copyright (C) 2000-2018 Tenable Network Security, Inc.
sourcehttps://www.tenable.com/plugins/nessus/10563
titleMS00-091: Incomplete TCP/IP Packet Vulnerability (199346)

Packetstorm

data sourcehttps://packetstormsecurity.com/files/download/23919/bindview.naptha.txt
idPACKETSTORM:23919
last seen2016-12-05
published2000-12-22
reporterrazor.bindview.com
sourcehttps://packetstormsecurity.com/files/23919/bindview.naptha.txt.html
titlebindview.naptha.txt