Lucene search

K
cveMitreCVE-1999-0803
HistoryApr 25, 2000 - 4:00 a.m.

CVE-1999-0803

2000-04-2504:00:00
mitre
web.nvd.nist.gov
27
cve-1999-0803
aix
enetwork
firewall
fwluser
symlink attack
local users
security vulnerability

CVSS2

2.1

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

PARTIAL

Availability Impact

NONE

AV:L/AC:L/Au:N/C:N/I:P/A:N

AI Score

6.7

Confidence

High

EPSS

0

Percentile

0.4%

The fwluser script in AIX eNetwork Firewall allows local users to write to arbitrary files via a symlink attack.

Affected configurations

Nvd
Node
ibmaix_enetwork_firewallMatch3.2
OR
ibmaix_enetwork_firewallMatch3.3
VendorProductVersionCPE
ibmaix_enetwork_firewall3.2cpe:2.3:a:ibm:aix_enetwork_firewall:3.2:*:*:*:*:*:*:*
ibmaix_enetwork_firewall3.3cpe:2.3:a:ibm:aix_enetwork_firewall:3.3:*:*:*:*:*:*:*

CVSS2

2.1

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

PARTIAL

Availability Impact

NONE

AV:L/AC:L/Au:N/C:N/I:P/A:N

AI Score

6.7

Confidence

High

EPSS

0

Percentile

0.4%

Related for CVE-1999-0803