01642 06 11 11 Arrange Call

Denial of Service and Arbitrary Code Execution Vulnerability in Windows SSP Interface

CVE-2004-0119 · HIGH

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

CVE-2004-0119

The Negotiate Security Software Provider (SSP) interface in Windows 2000, Windows XP, and Windows Server 2003, allows remote attackers to cause a denial of service (crash from null dereference) or execute arbitrary code via a crafted SPNEGO NegTokenInit request during authentication protocol selection.

Learn more about our Cis Benchmark Audit For Server Software.