CVE-1999-1365
Windows NT searches a user's home directory (%systemroot% by default) before other directories to find critical programs such as NDDEAGNT.EXE, EXPLORER.EXE, USERINIT.EXE or TASKMGR.EXE, which could allow local users to bypass access restrictions or gain…
Does this matter?
High impact if exploited, but EPSS currently rates exploitation as unlikely (2.82%). Schedule it in the normal patch cycle and watch for a rise in EPSS or a public exploit.
Description
Windows NT searches a user's home directory (%systemroot% by default) before other directories to find critical programs such as NDDEAGNT.EXE, EXPLORER.EXE, USERINIT.EXE or TASKMGR.EXE, which could allow local users to bypass access restrictions or gain privileges by placing a Trojan horse program into the root directory, which is writable by default.
- CVSS 2.0
- 7.2 HIGHAV:L/AC:L/Au:N/C:C/I:C/A:C
- EPSS
- 2.82% probability · 86th percentile
- CISA KEV
- Not listed
- Affected
- microsoft/windows nt
- Source
- cve@mitre.org
References
- http://marc.info/?l=ntbugtraq&m=93069418400856&w=2
- http://marc.info/?l=ntbugtraq&m=93127894731200&w=2
- http://www.securityfocus.com/bid/515
- https://exchange.xforce.ibmcloud.com/vulnerabilities/2336
- http://marc.info/?l=ntbugtraq&m=93069418400856&w=2
- http://marc.info/?l=ntbugtraq&m=93127894731200&w=2
- http://www.securityfocus.com/bid/515
- https://exchange.xforce.ibmcloud.com/vulnerabilities/2336
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.