CVE-1999-0755

CVSS 2.0 Score 5 of 10 (medium)

Details

Published May 27, 1999
Updated: Nov 20, 2024
CWE ID 255

Summary

CVE-1999-0755 refers to a vulnerability in Windows NT Remote Access Service (RRAS) and RAS clients, where user passwords are cached even if the "Save password" option is not selected. This issue can lead to unauthorized access to user accounts if an attacker gains access to the system. The vulnerability arises due to the improper handling of password information, allowing passwords to be retrieved from the system memory. This weakness poses a significant risk to network security and requires immediate mitigation measures, such as disabling password caching or implementing strong access control policies.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share

Affected Products

  • Microsoft Windows NT
  • Microsoft Windows 2000

Affected Vendors

  • Microsoft