CVE-1999-0583
Published Jan 1, 1999There is a one-way or two-way trust relationship between Windows NT domains.
Severity archive
43,853 critical severity CVEs — 43,853 Critical, 126,429 High, 163,820 Medium, 18,047 Low, 1,892 Unrated across the current result set.
There is a one-way or two-way trust relationship between Windows NT domains.
A Windows NT file system is not NTFS.
A WWW server is not running in a restricted file system, e.g. through a chroot, thus allowing access to system-critical data.
A system-critical Windows NT registry key has inappropriate permissions.
An event log in Windows NT has inappropriate access permissions.
The Logon box of a Windows NT system displays the name of the last user who logged in.
A Windows NT system does not restrict access to removable media drives such as a floppy disk drive or CDROM drive.
A Windows NT log file has an inappropriate maximum size or retention period.
A Windows NT account policy does not forcibly disconnect remote users from the server when their logon hours expire.
A network intrusion detection system (IDS) does not properly handle packets that are sent out of order, allowing an attacker to escape detection.
A network intrusion detection system (IDS) does not properly handle packets with improper sequence numbers.
A network intrusion detection system (IDS) does not verify the checksum on a packet.
A network intrusion detection system (IDS) does not properly handle data within TCP handshake packets.
A network intrusion detection system (IDS) does not properly reassemble fragmented packets.
In Windows NT, an inappropriate user is a member of a group, e.g. Administrator, Backup Operators, Domain Admins, Domain Guests, Power Users, Print Operators, Replicators, System…
A system-critical Windows NT registry key has an inappropriate value.
The rexec service is running.
The NT Alerter and Messenger services are running.
The discard service is running.
The Gopher service is running.
A component service related to NIS+ is running.
The OS/2 or POSIX subsystem in NT is enabled.
A system is running a version of software that was replaced with a Trojan Horse at one of its distribution points, such as (1) TCP Wrappers 7.6, (2) util-linux 2.9g, (3) wuarchive…
A system-critical program or library does not have the appropriate patch, hotfix, or service pack installed, or is outdated or obsolete.
A system-critical program, library, or file has a checksum or other integrity measurement that indicates that it has been modified.