Microsoft Windows PPTP Server Malformed Control Packet Remote DoS (179107)

Medium Nessus Plugin ID 10313


The remote PPTP server is vulnerable to denial of service.


We could make the remote PPTP host crash by telnetting to port 1723, and sending garbage followed by the character ^D. (control-d).

An attacker may use this flaw to deny service.


Install WindowsNT SP5.

See Also;EN-US;179107

Plugin Details

Severity: Medium

ID: 10313

File Name: winnt_pptp_dos.nasl

Version: $Revision: 1.25 $

Type: remote

Agent: windows

Family: Windows

Published: 1999/08/30

Modified: 2014/05/27

Risk Information

Risk Factor: Medium


Base Score: 5

Temporal Score: 4.8

Vector: CVSS2#AV:N/AC:L/Au:N/C:N/I:N/A:P

Temporal Vector: CVSS2#E:F/RL:U/RC:ND

Vulnerability Information

Required KB Items: Settings/ParanoidReport

Reference Information

CVE: CVE-1999-0140

BID: 2111

OSVDB: 55332