National Cyber Awareness System
Vulnerability Summary for CVE-2001-1288
Original release date:07/27/2001
Last revised:09/10/2008
Source:
US-CERT/NIST
Overview
Windows 2000 and Windows NT allows local users to cause a denial of service (reboot) by executing a command at the command prompt and pressing the F7 and enter keys several times while the command is executing, possibly related to an exception handling error in csrss.exe.
Impact
CVSS Severity (version 2.0 incomplete approximation):
Impact Subscore:
2.9
Exploitability Subscore:
3.9
CVSS Version 2 Metrics:
Access Vector: Locally exploitable
Access Complexity: Low
Authentication: Not required to exploit
Impact Type:Allows disruption of serviceUnknown
References to Advisories, Solutions, and Tools
By selecting these links, you will be leaving NIST webspace. We have provided these links to other web sites because they may have information that would be of interest to you. No inferences should be drawn on account of other sites being referenced, or not, from this page. There may be other web sites that are more appropriate for your purpose. NIST does not necessarily endorse the views expressed, or concur with the facts presented on these sites. Further, NIST does not endorse any commercial products that may be mentioned on these sites. Please address comments about this page to nvd@nist.gov.
External Source: BUGTRAQ
Name: 20010731 NT TS / Win 2K and F7 - Enter bug
External Source: BUGTRAQ
Name: 20010727 bug w2k
Type: Advisory; Exploit
External Source: VULN-DEV
Name: 20010730 RE: bug w2k
Type: Advisory; Exploit
External Source: BUGTRAQ
Name: 20010729 Re: w2k dos
Type: Advisory; Exploit
External Source: BID
Name: 3115
External Source: BUGTRAQ
Name: 20010801 F7-Enter bug details & workaround