CVE-1999-1318
CVSS 2.0 Score 7.2 of 10 (high)
Details
Summary
CVE-1999-1318 is a vulnerability affecting SunOS 4.1.3 and earlier versions. The issue lies with the '/usr/5bin/su' command, which includes the current working directory in its search path. This allows local users to execute Trojan horse programs and effectively gain elevated privileges. By taking advantage of this vulnerability, an attacker could bypass security restrictions and gain unauthorized access to sensitive information or system functionality. This weakness highlights the importance of restricting search paths and carefully managing user permissions in Unix-based systems.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Affected Products
- SunOS
Affected Vendors
- Oracle Corp