CVE-1999-0942
CVSS 2.0 Score 7.2 of 10 (high)
Details
Published Oct 4, 1999
Updated: Nov 20, 2024
Summary
CVE-1999-0942 is a vulnerability affecting UnixWare's dos7utils. A local user can exploit this issue by setting the STATICMERGE environmental variable to gain root privileges. The dos7utils tool unintentionally executes a script found through this variable, providing unauthorized access to the system. This vulnerability poses a significant risk, as local users can escalate their privileges to the highest level, potentially leading to serious security implications.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Share
Affected Vendors
- California State Controller’s Office