CVE-1999-0982

CVSS 2.0 Score 7.2 of 10 (high)

Details

Published Dec 5, 1999
Updated: Nov 20, 2024

Summary

CVE-1999-0982 involves a security weakness in Sun Web-Based Enterprise Management (WBEM). During installation, the script creates a world-readable file where a password is stored in plaintext. This vulnerability poses a significant risk, as unauthorized users can easily access the file and obtain the password, potentially gaining unauthorized access to WBEM systems. The plaintext password storage is a clear deviation from secure password handling practices and exposes organizations to potential data breaches. Organizations using Sun WBEM are advised to remediate this issue promptly by updating their password storage methods.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share

Affected Products

  • Solaris

Affected Vendors

  • BonqDAO
  • Sun Microsystems, Inc.