Public exploit available
Public proof-of-concept or exploit code exists (ExploitDB / Metasploit / Nuclei).

CVE-1999-0845

4 documents4 sources
Severity
7.2HIGH
EPSS
0.2%
top 52.96%
CISA KEV
Not in KEV
Exploit
PoC available
Public exploit / PoC exists
Affected products
Timeline
PublishedNov 25
Latest updateApr 30

Description

Buffer overflow in SCO su program allows local users to gain root access via a long username.

CVSS vector

AV:L/AC:L/C:C/I:C/A:CExploitability: 3.9 | Impact: 10.0

Affected Packages1 packages

NVDsco/unixware7.0

🔴Vulnerability Details

2
GHSA
GHSA-94j9-vgcm-q47x: Buffer overflow in SCO su program allows local users to gain root access via a long username2022-04-30
CVEList
CVE-1999-0845: Buffer overflow in SCO su program allows local users to gain root access via a long username2000-02-04

💥Exploits & PoCs

1
Exploit-DB
SCO Unixware 2.1/7.0/7.0.1/7.1/7.1.1 - su(1) Buffer Overflow1999-10-30
CVE-1999-0845 (HIGH CVSS 7.2) | Buffer overflow in SCO su program a | cvebase.io