CVE-1999-0975

CVSS 2.0 Score 4.6 of 10 (medium)

Details

Published Dec 10, 1999
Updated: Nov 20, 2024

Summary

CVE-1999-0975 is a local vulnerability affecting the Windows Help system. By manipulating a metafile with a .CNT extension in the table of contents, an attacker can modify topic actions, enabling them to execute commands under another user's privileges when accessing the associated .hlp file. This security flaw allows local users to escalate their privileges, potentially leading to significant unauthorized system access.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share

Affected Products

  • Microsoft Windows NT
  • Microsoft Windows 95
  • Microsoft Windows 98 Plus Pack

Affected Vendors

  • Microsoft