CVE-1999-1221
CVSS 2.0 Score 2.1 of 10 (low)
Details
Published Nov 17, 1996
Updated: Nov 20, 2024
Summary
CVE-1999-1221 is a vulnerability affecting Digital Unix (OSF/1) 3.x. It allows local users to manipulate arbitrary files by exploiting a symlink vulnerability in the dxchpwd.log file associated with the dxchpwd utility. By creating a symbolic link to a desired file and modifying the dxchpwd.log file, attackers can gain unintended access and make changes to critical system configurations or data. This issue poses a significant security risk and requires immediate patching to prevent potential attacks.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Affected Products
- Digital Unix
Affected Vendors
- Compaq