CVE-1999-1461

CVSS 2.0 Score 7.2 of 10 (high)

Details

Published May 7, 1997
Updated: Nov 20, 2024

Summary

CVE-1999-1461 is a vulnerability affecting the inpview component of InPerson on IRIX 5.3 to IRIX 6.5.10. This issue allows local users to gain root access by manipulating the PATH environmental variable. The vulnerable application, inpview, mistakenly trusts this variable when executing the ttsession program. By modifying the PATH to include a malicious ttsession, an attacker can execute the Trojan horse and ultimately obtain root privileges.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share

Affected Products

  • SGI IRAX

Affected Vendors

  • Saskatchewan Government Insurance