CVE-1999-1552
published 1994-07-20CVE-1999-1552: dpsexec (DPS Server) when running under XDM in IBM AIX 3.2.5 and earlier does not properly check privileges, which allows local users to overwrite arbitrary…
PriorityP421high7.2CVSS 2.0
AVLACLAuNCCICAC
EPSS
0.35%
27.8th percentile
dpsexec (DPS Server) when running under XDM in IBM AIX 3.2.5 and earlier does not properly check privileges, which allows local users to overwrite arbitrary files and gain privileges.
Affected
4 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| ibm | aix | <= 3.2.5 | — |
| ibm | aix | — | — |
| ibm | aix | — | — |
| ibm | aix | — | — |
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
VulDB
IBM AIX 3.1/3.2/3.2.4/3.2.5 dpsexec Local Privilege Escalation (BID-358)
vuldb·2026-04-16·CVSS 7.2
CVE-1999-1552 [HIGH] IBM AIX 3.1/3.2/3.2.4/3.2.5 dpsexec Local Privilege Escalation (BID-358)
A vulnerability was found in IBM AIX 3.1/3.2/3.2.4/3.2.5 and classified as problematic. This impacts an unknown function of the component dpsexec. Such manipulation leads to Local Privilege Escalation.
This vulnerability is uniquely identified as CVE-1999-1552. Local access is required to approach this attack. No exploit exists.
It is suggested to upgrade the affected component.
GHSA
GHSA-8gvm-3v25-425g: dpsexec (DPS Server) when running under XDM in IBM AIX 3
ghsa_unreviewed·2022-04-30
CVE-1999-1552 [HIGH] GHSA-8gvm-3v25-425g: dpsexec (DPS Server) when running under XDM in IBM AIX 3
dpsexec (DPS Server) when running under XDM in IBM AIX 3.2.5 and earlier does not properly check privileges, which allows local users to overwrite arbitrary files and gain privileges.
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
1994-07-20
Published