VulnerabilityModified
CVE-1999-1425
Solaris Solstice AdminSuite (AdminSuite) 2.1 incorrectly sets write permissions on source files for NIS maps, which could allow local users to gain privileges by modifying /etc/passwd.
MEDIUM 6.2EPSS 0.28%
Does this matter?
Lower severity and a low EPSS score (0.28%). Track it; it rarely justifies an emergency change on its own.
Description
Solaris Solstice AdminSuite (AdminSuite) 2.1 incorrectly sets write permissions on source files for NIS maps, which could allow local users to gain privileges by modifying /etc/passwd.
- CVSS 2.0
- 6.2 MEDIUMAV:L/AC:H/Au:N/C:C/I:C/A:C
- EPSS
- 0.28% probability · 20th percentile
- CISA KEV
- Not listed
- Affected
- sun/solstice adminsuite
- Source
- cve@mitre.org
References
- http://sunsolve.sun.com/pub-cgi/retrieve.pl?doctype=coll&doc=secbull/145Patch, Vendor Advisory
- http://www.securityfocus.com/bid/208Patch, Vendor Advisory
- http://sunsolve.sun.com/pub-cgi/retrieve.pl?doctype=coll&doc=secbull/145Patch, Vendor Advisory
- http://www.securityfocus.com/bid/208Patch, Vendor Advisory
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.