CVE-1999-0585: Low severity Microsoft Windows NT vulnerability
Published Feb 4, 2000
·Updated
A Windows NT administrator account has the default name of Administrator.
Affected Software
7 affected components
Microsoft Windows NT=3.5.1
Microsoft Windows NT=3.5.1-sp1
Microsoft Windows NT=4.0
Microsoft Windows NT=3.5.1-sp5
Microsoft Windows 2000
Microsoft Windows NT=3.5.1-sp3
Microsoft Windows NT=3.5.1-sp2
Event History
Feb 4, 2000
CVE Published
via MITRE·10:00 AM
Data Sourced
via MITRE·10:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-1999-0585?
CVE-1999-0585 has a critical severity because it involves the default naming of the administrator account, which is a common target for attackers.
2
How do I fix CVE-1999-0585?
To mitigate CVE-1999-0585, rename the default Administrator account to a custom name and enforce strong password policies.
3
What software versions are affected by CVE-1999-0585?
CVE-1999-0585 affects Microsoft Windows NT 3.5.1, its service packs, and Windows 2000.
4
How can CVE-1999-0585 be exploited?
CVE-1999-0585 can be exploited by attackers who attempt to gain unauthorized access using the default administrator account.
5
Is CVE-1999-0585 still relevant today?
While CVE-1999-0585 pertains to older systems, the practice of using default names for accounts remains a vulnerability across various platforms today.