CVE-1999-1461
CVSS 2.0 Score 7.2 of 10 (high)
Details
Published May 7, 1997
Updated: Nov 20, 2024
Summary
CVE-1999-1461 is a vulnerability affecting the inpview component of InPerson on IRIX 5.3 to IRIX 6.5.10. This issue allows local users to gain root access by manipulating the PATH environmental variable. The vulnerable application, inpview, mistakenly trusts this variable when executing the ttsession program. By modifying the PATH to include a malicious ttsession, an attacker can execute the Trojan horse and ultimately obtain root privileges.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Share
Affected Products
- SGI IRAX
Affected Vendors
- Saskatchewan Government Insurance