CVE-1999-0300
CVSS 2.0 Score 7.5 of 10 (high)
Details
Summary
CVE-1999-0300 is a vulnerability affecting the nis_cachemgr component in Solaris NIS+. Attackers can exploit this weakness by adding malicious NIS+ servers, potentially gaining unauthorized access to sensitive network information. This issue could lead to serious security consequences, including data theft or unauthorized system modifications. The vulnerability arises due to insufficient access controls in the nis_cachemgr component, allowing unauthenticated NIS+ servers to be added to the trusted list. To mitigate this risk, affected systems should be updated with the appropriate patches and configurations reviewed to ensure only authorized NIS+ servers are present on the network.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Affected Products
- SunOS
Affected Vendors
- Oracle Corp