CVE-1999-1042
CVSS 2.0 Score 1.2 of 10 (low)
Details
Summary
CVE-1999-1042 refers to a vulnerability in the Cisco Resource Manager (CRM) versions 1.0 and 1.1. This issue allows local users to access world-readable log files and temporary files, potentially exposing sensitive information such as user IDs, passwords, and SNMP community strings. The vulnerability arises due to insufficient file permissions on these files, making them accessible to unintended users. This can lead to unauthorized access to confidential data, posing a significant risk to network security. It is recommended that affected organizations immediately update their CRM software to mitigate this vulnerability.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Affected Vendors
- Cisco Systems Inc