Vulnerability Description
The Windows help system can allow a local user to execute commands as another user by editing a table of contents metafile with a .CNT extension and modifying the topic action to include the commands to be executed when the .hlp file is accessed.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Microsoft | Windows 95 | All versions |
| Microsoft | Windows 98 | All versions |
| Microsoft | Windows Nt | 4.0 |
References
FAQ
What is CVE-1999-0975?
CVE-1999-0975 is a vulnerability with a CVSS score of 4.6 (MEDIUM). The Windows help system can allow a local user to execute commands as another user by editing a table of contents metafile with a .CNT extension and modifying the topic action to include the commands ...
How severe is CVE-1999-0975?
CVE-1999-0975 has been rated MEDIUM with a CVSS base score of 4.6/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-1999-0975?
Check the references section above for vendor advisories and patch information. Affected products include: Microsoft Windows 95, Microsoft Windows 98, Microsoft Windows Nt.