Exploitation Summary
EIP tracks 1 public exploit for CVE-1999-0886. PoCs published by Alberto RodrÃguez Aragonés.
AI-analyzed exploit summary This exploit leverages a registry modification vulnerability in Windows NT to replace the RASMAN service binary path with a malicious executable. When the RAS service restarts, the trojan service runs with SYSTEM privileges, enabling privilege escalation or remote command execution.
Description
The security descriptor for RASMAN allows users to point to an alternate location via the Windows NT Service Control Manager.
Exploits (1)
This exploit leverages a registry modification vulnerability in Windows NT to replace the RASMAN service binary path with a malicious executable. When the RAS service restarts, the trojan service runs with SYSTEM privileges, enabling privilege escalation or remote command execution.