Public exploit available
Public proof-of-concept or exploit code exists (ExploitDB / Metasploit / Nuclei).

CVE-1999-1008Freebsd vulnerability

6 documents4 sources
Severity
7.2HIGHNVD
EPSS
0.3%
top 43.17%
CISA KEV
Not in KEV
Exploit
PoC available
Public exploit / PoC exists
Timeline
PublishedMay 17
Latest updateApr 30

Description

xsoldier program allows local users to gain root access via a long argument.

CVSS vector

AV:L/AC:L/C:C/I:C/A:CExploitability: 3.9 | Impact: 10.0

Affected Packages1 packages

Also affects: Freebsd 3.3

🔴Vulnerability Details

2
GHSA
GHSA-6ww3-wprw-46qp: xsoldier program allows local users to gain root access via a long argument2022-04-30
CVEList
CVE-1999-1008: xsoldier program allows local users to gain root access via a long argument2000-04-18

💥Exploits & PoCs

3
Exploit-DB
xsoldier 0.96 (RedHat 6.2) - Local Buffer Overflow2000-12-15
Exploit-DB
xsoldier (FreeBSD 3.3/Linux Mandrake 7.0) - Local Buffer Overflow (1)2000-05-17
Exploit-DB
xsoldier (FreeBSD 3.3/Linux Mandrake 7.0) - Local Buffer Overflow (2)2000-05-17
CVE-1999-1008 — Freebsd vulnerability | cvebase