10

CVE-1999-1138

SCO UNIX System V/386 Release 3.2, and other SCO products, installs the home directories (1) /tmp for the dos user, and (2) /usr/tmp for the asg user, which allows other users to gain access to those accounts since /tmp and /usr/tmp are world-writable.

Daten sind bereitgestellt durch National Vulnerability Database (NVD)
ScoOpen Desktop Version1.0
ScoOpen Desktop Version2.0
ScoOpen Desktop Version3.0
ScoOpen Desktop Lite Version3.0
ScoOpenserver Version3.0
ScoUnix Versionsystem_v386_3.2_operating_system
ScoUnix Versionsystem_v386_3.2_operating_system_2.0
ScoUnix Versionsystem_v386_3.2_operating_system_4.0
ScoUnix Versionsystem_v386_3.2_operating_system_4.x
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.53% 0.665
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 10 10 10
AV:N/AC:L/Au:N/C:C/I:C/A:C