CVE-1999-0117

CVSS 2.0 Score 7.2 of 10 (high)

Details

Published Mar 31, 1992
Updated: Nov 20, 2024

Summary

CVE-1999-0117 is a vulnerability affecting AIX systems where the passwd command allows local users to elevate their privileges to root level access. An attacker can exploit this issue by manipulating the /etc/passwd file and setting the user ID (UID) and group ID (GID) of a regular user to 0, effectively granting them root access. This vulnerability poses a significant risk to AIX systems as it enables unauthorized users to gain administrative control. System administrators are strongly advised to apply the available patch or update to mitigate this issue.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share