CVE-1999-1104

Windows 95 - Weak Password Encryption in Password List File

Title source: llm
STIX 2.1

Description

Windows 95 uses weak encryption for the password list (.pwl) file used when password caching is enabled, which allows local users to gain privileges by decrypting the passwords.

References (5)

Core 5
Core References
Third Party Advisory vdb-entry x_refsource_xf
http://www.iss.net/security_center/static/71.php
Vendor Advisory vendor-advisory x_refsource_mskb
http://support.microsoft.com/support/kb/articles/q140/5/57.asp
Mailing List mailing-list x_refsource_ntbugtraq
http://marc.info/?l=ntbugtraq&m=88540877601866&w=2
Mailing List mailing-list x_refsource_bugtraq
http://marc.info/?l=bugtraq&m=88536273725787&w=2
Mailing List mailing-list x_refsource_bugtraq
http://marc.info/?l=bugtraq&m=87602167418931&w=2

Scores

EPSS 0.0101
EPSS Percentile 59.9%

Details

Status published
Products (1)
microsoft/windows_95
Published Dec 31, 1999
Tracked Since Feb 18, 2026