VulnerabilityModified
CVE-1999-0886
The security descriptor for RASMAN allows users to point to an alternate location via the Windows NT Service Control Manager.
HIGH 9.0EPSS 21.6%
Does this matter?
EPSS puts the probability of exploitation in the next 30 days at 21.6%, higher than 97% of all known CVEs. Patch or mitigate before the next change window.
Description
The security descriptor for RASMAN allows users to point to an alternate location via the Windows NT Service Control Manager.
- CVSS 2.0
- 9.0 HIGHAV:N/AC:L/Au:S/C:C/I:C/A:C
- EPSS
- 21.57% probability · 97th percentile
- CISA KEV
- Not listed
- Weakness
- CWE-16
- Affected
- microsoft/windows nt
- Source
- cve@mitre.org
References
- http://support.microsoft.com/default.aspx?scid=kb%3B%5BLN%5D%3BQ242294
- http://www.securityfocus.com/bid/645
- https://docs.microsoft.com/en-us/security-updates/securitybulletins/1999/ms99-041
- http://support.microsoft.com/default.aspx?scid=kb%3B%5BLN%5D%3BQ242294
- http://www.securityfocus.com/bid/645
- https://docs.microsoft.com/en-us/security-updates/securitybulletins/1999/ms99-041
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.