Windows NT with SYSKEY reuses the keystream that is used for encrypting SAM password hashes, allowing an attacker to crack passwords.
Weaknesses in this category are related to the management of credentials.
Link | Tags |
---|---|
http://www.securityfocus.com/bid/873 | vdb entry |
http://support.microsoft.com/default.aspx?scid=kb%3B%5BLN%5D%3BQ248183 | vendor advisory |
https://docs.microsoft.com/en-us/security-updates/securitybulletins/1999/ms99-056 | vendor advisory |