CVE-1999-1424
- EPSS 0.03%
- Published 10.11.1997 05:00:00
- Last modified 03.04.2025 01:03:51
Solaris Solstice AdminSuite (AdminSuite) 2.1 uses unsafe permissions when adding new users to the NIS+ password table, which allows local users to gain root access by modifying their password table entries.
CVE-1999-1425
- EPSS 0.03%
- Published 10.11.1997 05:00:00
- Last modified 03.04.2025 01:03:51
Solaris Solstice AdminSuite (AdminSuite) 2.1 incorrectly sets write permissions on source files for NIS maps, which could allow local users to gain privileges by modifying /etc/passwd.
CVE-1999-1426
- EPSS 0.04%
- Published 10.11.1997 05:00:00
- Last modified 03.04.2025 01:03:51
Solaris Solstice AdminSuite (AdminSuite) 2.1 follows symbolic links when updating an NIS database, which allows local users to overwrite arbitrary files.
CVE-1999-1427
- EPSS 0.04%
- Published 10.11.1997 05:00:00
- Last modified 03.04.2025 01:03:51
Solaris Solstice AdminSuite (AdminSuite) 2.1 and 2.2 create lock files insecurely, which allows local users to gain root privileges.
CVE-1999-1428
- EPSS 0.04%
- Published 10.11.1997 05:00:00
- Last modified 03.04.2025 01:03:51
Solaris Solstice AdminSuite (AdminSuite) 2.1 and 2.2 allows local users to gain privileges via the save option in the Database Manager, which is running with setgid bin privileges.