CVE-1999-0300

CVSS 2.0 Score 7.5 of 10 (high)

Details

Published Oct 1, 1997
Updated: Nov 20, 2024

Summary

CVE-1999-0300 is a vulnerability affecting the nis_cachemgr component in Solaris NIS+. Attackers can exploit this weakness by adding malicious NIS+ servers, potentially gaining unauthorized access to sensitive network information. This issue could lead to serious security consequences, including data theft or unauthorized system modifications. The vulnerability arises due to insufficient access controls in the nis_cachemgr component, allowing unauthenticated NIS+ servers to be added to the trusted list. To mitigate this risk, affected systems should be updated with the appropriate patches and configurations reviewed to ensure only authorized NIS+ servers are present on the network.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share