Public exploit available
Public proof-of-concept or exploit code exists (ExploitDB / Metasploit / Nuclei).

CVE-1999-1410Irix vulnerability

4 documents4 sources
Severity
6.2MEDIUMNVD
EPSS
0.9%
top 24.10%
CISA KEV
Not in KEV
Exploit
PoC available
Public exploit / PoC exists
Affected products
Timeline
PublishedMay 9
Latest updateMay 3

Description

addnetpr in IRIX 5.3 and 6.2 allows local users to overwrite arbitrary files and possibly gain root privileges via a symlink attack on the printers temporary file.

CVSS vector

AV:L/AC:H/C:C/I:C/A:CExploitability: 1.9 | Impact: 10.0

Affected Packages1 packages

NVDsgi/irix9 versions+8

Patches

🔴Vulnerability Details

2
GHSA
GHSA-c246-pm63-mr5c: addnetpr in IRIX 52022-05-03
CVEList
CVE-1999-1410: addnetpr in IRIX 52001-09-12

💥Exploits & PoCs

1
Exploit-DB
SGI IRIX 6.2 - '/usr/lib/netaddpr' Local Privilege Escalation1997-05-09