CVE-1999-0594: Critical severity Microsoft Windows NT vulnerability

Published Jan 1, 1999
·
Updated

A Windows NT system does not restrict access to removable media drives such as a floppy disk drive or CDROM drive.

Affected Software

1 affected component
Microsoft Windows NT

Remediation

Recommended actions to resolve this vulnerability, in priority order.

  1. Configuration

    Configure the operating system or local/group policy to restrict or deny access to removable media drives (floppy, CD-ROM) for unprivileged users; disable autorun/autoplay for removable media; remove or limit drive assignment for removable devices where possible.

    Windows NT removable media access = restricted
  2. Compensating control

    Physically secure, disable, or remove removable media drives (or disable them in BIOS) and restrict physical access to ports; use administrative controls to prevent use of external media until OS-level restrictions are implemented.

Event History

Jan 1, 1999
CVE Published
05:00 AM
Data Sourced
05:00 AM
DescriptionWeakness
Data Sourced
05:00 AM
Severity
Data Sourced
via NVD·05:00 AM
DescriptionSeverity
Feb 4, 2000
CVE Published
via MITRE·10:00 AM
Data Sourced
via MITRE·10:00 AM
Description

Frequently Asked Questions

1

What is the severity of CVE-1999-0594?

CVE-1999-0594 has a critical severity rating of 10.

2

How does CVE-1999-0594 affect Microsoft Windows NT systems?

CVE-1999-0594 allows unauthorized access to removable media drives, potentially leading to data breaches.

3

What types of attacks can exploit CVE-1999-0594?

CVE-1999-0594 can be exploited by attackers who can physically access the vulnerable system and manipulate removable media.

4

How can I mitigate the risks associated with CVE-1999-0594?

To mitigate CVE-1999-0594, restrict physical access to the system and implement strict policies on removable media usage.

5

Is it safe to continue using Microsoft Windows NT with CVE-1999-0594 present?

It is not safe to continue using Microsoft Windows NT with CVE-1999-0594 due to the critical vulnerability that allows unauthorized access.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2026 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203