CVE-1999-1138

3 documents3 sources
Severity
10.0CRITICAL
EPSS
0.5%
top 32.60%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedSep 17
Latest updateApr 30

Description

SCO UNIX System V/386 Release 3.2, and other SCO products, installs the home directories (1) /tmp for the dos user, and (2) /usr/tmp for the asg user, which allows other users to gain access to those accounts since /tmp and /usr/tmp are world-writable.

CVSS vector

AV:N/AC:L/C:C/I:C/A:CExploitability: 10.0 | Impact: 10.0

Affected Packages4 packages

NVDsco/unix4 versions+3
NVDsco/open_desktop1.0, 2.0, 3.0+2

🔴Vulnerability Details

2
GHSA
GHSA-xjv5-hx29-64jx: SCO UNIX System V/386 Release 32022-04-30
CVEList
CVE-1999-1138: SCO UNIX System V/386 Release 32002-03-09