CVE-1999-1042

CVSS 2.0 Score 1.2 of 10 (low)

Details

Published Dec 31, 1999
Updated: Nov 20, 2024

Summary

CVE-1999-1042 refers to a vulnerability in the Cisco Resource Manager (CRM) versions 1.0 and 1.1. This issue allows local users to access world-readable log files and temporary files, potentially exposing sensitive information such as user IDs, passwords, and SNMP community strings. The vulnerability arises due to insufficient file permissions on these files, making them accessible to unintended users. This can lead to unauthorized access to confidential data, posing a significant risk to network security. It is recommended that affected organizations immediately update their CRM software to mitigate this vulnerability.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share