CVE-1999-1037

CVSS 2.0 Score 7.2 of 10 (high)

Details

Published Jun 26, 1998
Updated: Nov 20, 2024

Summary

CVE-1999-1037 is a vulnerability affecting SATAN version 1.1.1. This issue allows local users to manipulate files through a symlink attack on the /tmp/rex.$$ file associated with the rex.satan component. By creating a symbolic link to a desired file, an attacker can overwrite the target file, resulting in potential data loss or unauthorized access. This vulnerability emphasizes the importance of secure file handling and access control to prevent similar attacks.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share