CVE-1999-0994
CVSS 2.0 Score 5 of 10 (medium)
Details
Published Dec 16, 1999
Updated: Nov 20, 2024
CWE ID 255
Summary
CVE-1999-0994 is a vulnerability affecting Windows NT systems. The issue lies in the reuse of the keystream during SYSKEY encryption of SAM password hashes. An attacker who gains access to the encrypted password hashes can exploit this vulnerability to crack the passwords using the same keystream. This weakness poses a significant risk to the security of sensitive information stored in the Windows NT operating system. It is recommended that affected systems are updated with the appropriate patch to mitigate this vulnerability.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Share
Affected Products
- Microsoft Windows NT
Affected Vendors
- Microsoft