4.6
CVSSv2

CVE-1999-0821

Published: 08/11/1999 Updated: 09/09/2008
CVSS v2 Base Score: 4.6 | Impact Score: 6.4 | Exploitability Score: 3.9
VMScore: 470
Vector: AV:L/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

FreeBSD seyon allows local users to gain privileges by providing a malicious program in the -emulator argument.

Vulnerable Product Search on Vulmon Subscribe to Product

freebsd freebsd 3.3

Exploits

#!/usr/bin/perl ## (c) Copyright teleh0r@doglovercom / anno domani 2000 ## ## Seyon Exploit / Tested Version 21 rev 4b i586-Linux ## Tested on: RedHat 40/51 ## ## Greets: scrippie, *@HWA, grazer, mixter, pr0ix, s\ ## wwwdigit-labsorg/ || teleh0rcjbnet/ $shellcode = "\xeb\x1f" #/* jmp 0x1f ...
source: wwwsecurityfocuscom/bid/838/info FreeBSD 33-RELEASE ships with Seyon, a communications program which is known to have several vulnerabilities which can allow for a malicious user to elevate priviliges The vulnerability, however, is that seyon is still installed setgid dialer in FreeBSD When seyon is exploited, a local user can ...