CVE-1999-0197
CVSS 2.0 Score 10 of 10 (high)
Details
Published Jan 1, 1999
Updated: Nov 20, 2024
Summary
CVE-1999-0197 is a vulnerability affecting some systems where executing a 'finger' command with the username of '0@host' can result in the disclosure of sensitive information about user accounts. This issue arises due to insufficient access controls in the 'finger' daemon, potentially enabling unauthorized users to gain insights into account details. This vulnerability underscores the importance of securing access to system services and implementing proper access control mechanisms.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.