Vulnerability Description
A Windows NT 4.0 user can gain administrative rights by forcing NtOpenProcessToken to succeed regardless of the user's permissions, aka GetAdmin.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Microsoft | Windows Nt | 4.0 |
Related Weaknesses (CWE)
References
- http://support.microsoft.com/default.aspx?scid=kb%3B%5BLN%5D%3BQ146965
- http://support.microsoft.com/default.aspx?scid=kb%3B%5BLN%5D%3BQ146965
FAQ
What is CVE-1999-0496?
CVE-1999-0496 is a vulnerability with a CVSS score of 7.2 (HIGH). A Windows NT 4.0 user can gain administrative rights by forcing NtOpenProcessToken to succeed regardless of the user's permissions, aka GetAdmin.
How severe is CVE-1999-0496?
CVE-1999-0496 has been rated HIGH with a CVSS base score of 7.2/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-1999-0496?
Check the references section above for vendor advisories and patch information. Affected products include: Microsoft Windows Nt.