CNCVE编号:CNCVE-19991358 CVE编号:CVE-1999-1358 安全级别:中 漏洞中文描述: 当一个Windows NT或Windows 2000的管理员改变一个用户策略时,如果本地ntconfig.pol没有对被该用户可写,该策略不能被完全更新,这可能允许本地用户可能通过将策略文件改成只读模式来绕过原本应该被策略执行的限制。 漏洞英文描述: When an administrator in Windows NT or Windows 2000 changes a user policy, the policy is not properly updated if the local ntconfig.pol is not writable by the user, which could allow local users to bypass restrictions that would otherwise be enforced by changing policy files to read-only mode. 漏洞参考: 系统类型:其他 漏洞类型:其他