7.2
CVSSv2

CVE-1999-0899

Published: 04/11/1999 Updated: 07/11/2023
CVSS v2 Base Score: 7.2 | Impact Score: 10 | Exploitability Score: 3.9
VMScore: 725
Vector: AV:L/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Summary

The Windows NT 4.0 print spooler allows a local user to execute arbitrary commands due to inappropriate permissions that allow the user to specify an alternate print provider.

Vulnerable Product Search on Vulmon Subscribe to Product

microsoft windows nt 4.0

Exploits

source: wwwsecurityfocuscom/bid/769/info The spooler service (spoolssexe) allows local users to add their own dll files and have the spooler run them at SYSTEM level This could lead to privilege escalation all the way up to Administrator level The problem is in the function AddPrintProvider() This exploit will crash the spooler serv ...