6.2
CVSSv2

CVE-1999-0718

Published: 12/03/2001 Updated: 10/10/2017
CVSS v2 Base Score: 6.2 | Impact Score: 10 | Exploitability Score: 1.9
VMScore: 625
Vector: AV:L/AC:H/Au:N/C:C/I:C/A:C

Vulnerability Summary

IBM GINA, when used for OS/2 domain authentication of Windows NT users, allows local users to gain administrator privileges by changing the GroupMapping registry key.

Vulnerable Product Search on Vulmon Subscribe to Product

ibm gina 1.0

Exploits

source: wwwsecurityfocuscom/bid/608/info IBM has written a replacement GINA for Windows NT to allow NT hosts to authenticate against OS/2 domains On machines running the modified GINA, the creation of a specific Registry key under HKLM\System\CurrentControlSet\Services\IBMNeTNT may allow a user to add any Group to the "Local Administrato ...