Public exploit available
Public proof-of-concept or exploit code exists (ExploitDB / Metasploit / Nuclei).

CVE-1999-1123Sunos vulnerability

5 documents4 sources
Severity
7.2HIGHNVD
EPSS
1.1%
top 21.91%
CISA KEV
Not in KEV
Exploit
PoC available
Public exploit / PoC exists
Affected products
Timeline
PublishedMay 20
Latest updateApr 30

Description

The installation of Sun Source (sunsrc) tapes allows local users to gain root privileges via setuid root programs (1) makeinstall or (2) winstall.

CVSS vector

AV:L/AC:L/C:C/I:C/A:CExploitability: 3.9 | Impact: 10.0

Affected Packages1 packages

NVDsun/sunos4.0.3, 4.1, 4.1.1+2

Patches

🔴Vulnerability Details

2
GHSA
GHSA-4538-g7mm-6mqj: The installation of Sun Source (sunsrc) tapes allows local users to gain root privileges via setuid root programs (1) makeinstall or (2) winstall2022-04-30
CVEList
CVE-1999-1123: The installation of Sun Source (sunsrc) tapes allows local users to gain root privileges via setuid root programs (1) makeinstall or (2) winstall2001-09-12

💥Exploits & PoCs

2
Exploit-DB
SunOS 4.1.1 - '/usr/release/bin/makeinstall' Local Privilege Escalation1999-11-23
Exploit-DB
SunOS 4.1.1 - '/usr/release/bin/winstall' Local Privilege Escalation1999-11-12
CVE-1999-1123 — SUN Sunos vulnerability | cvebase