Vulnerability Description
When the Ntconfig.pol file is used on a server whose name is longer than 13 characters, Windows NT does not properly enforce policies for global groups, which could allow users to bypass restrictions that were intended by those policies.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Microsoft | Windows Nt | All versions |
References
- http://support.microsoft.com/support/kb/articles/q163/8/75.aspPatchVendor Advisory
- http://www.iss.net/security_center/static/7401.php
- http://support.microsoft.com/support/kb/articles/q163/8/75.aspPatchVendor Advisory
- http://www.iss.net/security_center/static/7401.php
FAQ
What is CVE-1999-1359?
CVE-1999-1359 is a vulnerability with a CVSS score of 7.5 (HIGH). When the Ntconfig.pol file is used on a server whose name is longer than 13 characters, Windows NT does not properly enforce policies for global groups, which could allow users to bypass restrictions ...
How severe is CVE-1999-1359?
CVE-1999-1359 has been rated HIGH with a CVSS base score of 7.5/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-1999-1359?
Check the references section above for vendor advisories and patch information. Affected products include: Microsoft Windows Nt.