CVE-2001-0016
NTLM Security Support Provider (NTLMSSP) service does not properly check the function number in an LPC request, which could allow local users to gain administrator level access.
Date published : 2001-05-07
http://www.securityfocus.com/bid/2348
http://razor.bindview.com/publish/advisories/adv_NTLMSSP.html