CVE-1999-1455

CVSS 2.0 Score 7.5 of 10 (high)

Details

Published Dec 31, 1999
Updated: Nov 20, 2024

Summary

CVE-1999-1455 is a vulnerability affecting the RSH service utility RSHSVC in Windows NT 3.5 to 4.0. This issue allows unauthorized users to access the service by logging in from an authorized host, despite the restrictions specified in the .Rhosts file. The vulnerability could potentially lead to unauthorized system access and subsequent data breaches. The .Rhosts file, intended for securing access to RSH services, is not being properly enforced, enabling unauthorized users to gain access. This vulnerability poses a significant risk to systems running Windows NT 3.5 to 4.0 that have the RSH service enabled and an unsecured .Rhosts file.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share

Affected Products

  • Microsoft Windows NT

Affected Vendors

  • Microsoft