CVE-1999-0942

CVSS 2.0 Score 7.2 of 10 (high)

Details

Published Oct 4, 1999
Updated: Nov 20, 2024

Summary

CVE-1999-0942 is a vulnerability affecting UnixWare's dos7utils. A local user can exploit this issue by setting the STATICMERGE environmental variable to gain root privileges. The dos7utils tool unintentionally executes a script found through this variable, providing unauthorized access to the system. This vulnerability poses a significant risk, as local users can escalate their privileges to the highest level, potentially leading to serious security implications.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share