CVE-1999-0073
CVSS 2.0 Score 10.0 of 10 (high)
Details
Published Oct 13, 1995
Updated: Nov 20, 2024
Summary
CVE-1999-0073 is a vulnerability affecting Telnet that allows remote clients to set environment variables, specifically LD_LIBRARY_PATH. By manipulating this variable, attackers can bypass regular system libraries and gain unauthorized root access. This issue impacts Telnet servers that do not adequately restrict or validate user-supplied environment variables. This vulnerability can potentially lead to significant security risks and should be addressed promptly through updates or other appropriate mitigations.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Affected Products
- SGI IRAX
Affected Vendors
- Saskatchewan Government Insurance