CVE-1999-0594: Critical severity Microsoft Windows NT vulnerability
A Windows NT system does not restrict access to removable media drives such as a floppy disk drive or CDROM drive.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Configuration
Configure the operating system or local/group policy to restrict or deny access to removable media drives (floppy, CD-ROM) for unprivileged users; disable autorun/autoplay for removable media; remove or limit drive assignment for removable devices where possible.
Windows NT removable media access = restricted - Compensating control
Physically secure, disable, or remove removable media drives (or disable them in BIOS) and restrict physical access to ports; use administrative controls to prevent use of external media until OS-level restrictions are implemented.
Event History
Frequently Asked Questions
What is the severity of CVE-1999-0594?
CVE-1999-0594 has a critical severity rating of 10.
How does CVE-1999-0594 affect Microsoft Windows NT systems?
CVE-1999-0594 allows unauthorized access to removable media drives, potentially leading to data breaches.
What types of attacks can exploit CVE-1999-0594?
CVE-1999-0594 can be exploited by attackers who can physically access the vulnerable system and manipulate removable media.
How can I mitigate the risks associated with CVE-1999-0594?
To mitigate CVE-1999-0594, restrict physical access to the system and implement strict policies on removable media usage.
Is it safe to continue using Microsoft Windows NT with CVE-1999-0594 present?
It is not safe to continue using Microsoft Windows NT with CVE-1999-0594 due to the critical vulnerability that allows unauthorized access.