CVE-1999-1358
CVSS 2.0 Score 4.6 of 10 (medium)
Details
Published Dec 31, 1999
Updated: Nov 20, 2024
Summary
CVE-1999-1358 is a vulnerability affecting Windows NT and Windows 2000 systems. When an administrator modifies a user policy, the update fails if the local ntconfig.pol file is not writable for the user. This issue allows local users to bypass imposed policy restrictions by making the policy file read-only. Consequently, users can potentially evade intended access controls.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Affected Products
- Microsoft Windows NT
- Microsoft Windows 2000
Affected Vendors
- Microsoft